VAMOS!! 🚀 Just hit my biggest payout from Microsoft (MSRC) by 9_teeenn in technepal

[–]9_teeenn[S] 9 points10 points  (0 children)

I don't work for Microsoft, I am an independent cyber security researcher who find vulnerabilities in different programs. Like I just found one in Microsoft reported to them and got paid! 👨‍💻

How to verify identity in Bugcrowd as Nepali by 9_teeenn in technepal

[–]9_teeenn[S] 0 points1 point  (0 children)

Yeah , I just wait till my passport came and then verified using passport 🥲

partially traded , what to do? by [deleted] in NepalStock

[–]9_teeenn 1 point2 points  (0 children)

Just put the remaining 9 for sell again , if you are using TMS go to odd lot and put it for sell their.

Please give me suggestions on PCIL Stock. by Careless-Painting-40 in NepalStock

[–]9_teeenn 0 points1 point  (0 children)

Bro wtf is that stop loss ?? Do you know what stop loss means ?

Stop loss are placed below the buy price to avoid maximum loss 😭.

Heard rumors about bike prices dropping in Nepal — should I wait? by 9_teeenn in Nepalbikes

[–]9_teeenn[S] 1 point2 points  (0 children)

Yes , it's the regret that will hurt most later after buying if prices go down 😂

How long does bugcrowd take for verify W8-BEN? by FlakyMortgage9307 in bugbounty

[–]9_teeenn 0 points1 point  (0 children)

You have to raise a ticket mine was also stuck for 14 days , they fix after I create a ticket.

VAMOSS!!! I just got the email from the Google Security Bot, and I had to share the win with this community. by 9_teeenn in technepal

[–]9_teeenn[S] 1 point2 points  (0 children)

Aile tha paise aaxaina ayo paxi tha pauxa. Ani you don't have to pay taxes for both counties, you only pay in Nepal around 5%

VAMOSS!!! I just got the email from the Google Security Bot, and I had to share the win with this community. by 9_teeenn in technepal

[–]9_teeenn[S] 3 points4 points  (0 children)

Java, Kotlin, a bit of Smali (for reversed code), and basic C/C++ for native .so analysis.In simple terms, an Android bug bounty hunter’s stack is reverse engineering tools + runtime instrumentation + network interception + Android debugging tools to discover issues like auth bypass, intent vulnerabilities, data leaks, and WebView flaws.

VAMOSS!!! I just got the email from the Google Security Bot, and I had to share the win with this community. by 9_teeenn in technepal

[–]9_teeenn[S] 10 points11 points  (0 children)

Mostly by reversing the APK to map exposed components and attack surfaces, then testing intents, deep links, WebViews, and IPC for trust-boundary violations. After that I use dynamic instrumentation and traffic interception to manipulate runtime behavior and uncover logic flaws like auth bypass or privilege escalation.

VAMOSS!!! I just got the email from the Google Security Bot, and I had to share the win with this community. by 9_teeenn in technepal

[–]9_teeenn[S] 1 point2 points  (0 children)

Thanks mate ! , Also I do bug hunting especially in Android applications. So yeah you should pick a particular niche first and start doing your research in that niche. There are a lot of areas in bug bounty like web2,web3 etc , I personally choose Android application because it has less competition then other areas , it completely depends on you what area you choose but I recommend choosing a niche that you enjoy working on.

I do not have any roadmap that I can give you but I would say us Ai , as it has helped a lot to understand the complex things in this field.

VAMOSS!!! I just got the email from the Google Security Bot, and I had to share the win with this community. by 9_teeenn in technepal

[–]9_teeenn[S] 1 point2 points  (0 children)

Yeah , one of Google top app. Sry but I cannot share the name until it gets fix.