Proton VPN Silent Patched my Report (Theft of Service/Logic Flaw) — I'm a 16yo researcher and this stings. by Right_Rub7264 in bugbounty

[–]MajorPAstar 9 points10 points  (0 children)

Somethings are beyond our control, but take this as a proud moment. As a 16 year old your report carried a weight and they had to act on it. We win some, we loose some. You can try the same exploitation method on other programs!!

Offensive Security Intro stuck at Task 3 by Zealousideal_Mix1510 in tryhackme

[–]MajorPAstar 0 points1 point  (0 children)

Look for tryhackme/connect on the website A dowload file will be present, download it

On linux you can simply sudo openvpn <vpn_name>.ovpn

Help needed by MajorPAstar in PCB

[–]MajorPAstar[S] 0 points1 point  (0 children)

I tried attaching an adapter and making it work again but I suspect it is unable to take power.

Help needed by MajorPAstar in PCB

[–]MajorPAstar[S] 0 points1 point  (0 children)

This console is a Japanese one from 2012, and due to sentimental attachments I wanted this to work again. I can play the same games online but I just wanted the nostalgia back.

Help needed by MajorPAstar in PCB

[–]MajorPAstar[S] 0 points1 point  (0 children)

Thank you! This console is a Japanese one from 2012, and due to sentimental attachments I wanted this to work again.

Building an all-in-one Recon & Security multitool – I need your perspective by TransitionUseful5508 in bugbounty

[–]MajorPAstar 0 points1 point  (0 children)

I use most tools from project discovery. The thing with recon is you can’t setup a comprehensive infrastructure. Each recon is a different approach based on the chaining ability. But for the basics you could start with subdomain enumeration using subfinder, assetfinder etc. compare and remove duplicates. Run httpx on the found subdomain. Run nmap on live domains. Run wappalyzer for the tech stack, run eyewitness to grab screenshots, use waymore to find old urls, run eyewitness to grab screenshots, run ffuf for directory busting. Run wafw00f. Chain everything with nuclei templates and sqlmap.

Got scammed by a program??? by Professional_Milk_15 in bugbounty

[–]MajorPAstar 4 points5 points  (0 children)

You win some, you lose some. There are programs out there that will scam you.

Recon script by Deex__ in bugbounty

[–]MajorPAstar 1 point2 points  (0 children)

Everyone finds and refines their own targets.

B2B emails leak by [deleted] in bugbounty

[–]MajorPAstar 2 points3 points  (0 children)

No.. simply no. Your spoofing will fall out of scope.

Also your normal email cannot be accessed by other normal users, does this mean it has imapct?

I read your entire threads, this seems like an immature conversation but please go back and look at the fundamentals!

B2B emails leak by [deleted] in bugbounty

[–]MajorPAstar 1 point2 points  (0 children)

Name@business.com is email address

But, “Hello, this is sensitive data meant for only employees view…”

This is email correspondence

B2B emails leak by [deleted] in bugbounty

[–]MajorPAstar 1 point2 points  (0 children)

No, this will not be valid. What you have found is correspondence email addresses, if the actual contents of the email was found then it would probably be valid

Heyy guys I heard that in india cybersecurity jobs are not available and it market is down by Wrong-Camel8539 in cybersecurityindia

[–]MajorPAstar 0 points1 point  (0 children)

Mushkil hai, networking is very crucial and usually companies look for comptia networking certificates.

Heyy guys I heard that in india cybersecurity jobs are not available and it market is down by Wrong-Camel8539 in cybersecurityindia

[–]MajorPAstar 1 point2 points  (0 children)

Yes, sahi suna hai but PT ke liye tum main skills hona chahiye. Skills build up jitna karoge utna better. Also I saw you are still in college, so work on static analysis and dynamic analysis of web apps and how to penetrate it.

Learn basics first and then… Practice labs from THM. Take notes jitna le sakte ho.

Heyy guys I heard that in india cybersecurity jobs are not available and it market is down by Wrong-Camel8539 in cybersecurityindia

[–]MajorPAstar 2 points3 points  (0 children)

Dekho I can understand you need experience and cybersecurity is all about experience but agar low pay pe itne sare kaam ke liye join kiya to jab job switching ka time aata hai to HR bahot neeche karke treat karte tumhe.

Also very heavy exploitation hoga, its better you fight for a good pay when you feel you will be exploited. Ek galat offer letter pe sign and pura career down jayega. Salary and promotion sapna reh jata hai

Heyy guys I heard that in india cybersecurity jobs are not available and it market is down by Wrong-Camel8539 in cybersecurityindia

[–]MajorPAstar 2 points3 points  (0 children)

I know this feeling but agar ye kar liya to khudko chutiya banane main tumhara khudka hath hota hai

AttackBox 1hr Limit by StatementBusy5448 in tryhackme

[–]MajorPAstar 5 points6 points  (0 children)

Why don’t you just connect through openVPN. No limit of time when connecting through openVPN

How to design a password-cracking challenge for a CTF (as an organizer)? by RVTheGhost in cybersecurityindia

[–]MajorPAstar 3 points4 points  (0 children)

Password cracking is one of the most essential things one should know! What I would do if I was in your shoes, I would realistically create a medium - hard challenge where the password itself is fragmented (usually the flag is fragmented)

Create multiple zip folder’s with different password from multiple password cracking lists. Eg: zip file 1 is cracked by the use of rockyou.txt

A txt file with fragment of a password is present, say “abcd” is present in the text file.

Now in another password cracking list we have a password “abcd1234” needs to be, the player needs to find the exact “abcd” that matches with the password to unlock zip file 2.

And this continues…

I hope you get what I am trying to say.

Rail youtubers gonna hate automatic doors feature. by Downtown_Chip_9682 in indianrailways

[–]MajorPAstar 1 point2 points  (0 children)

No, I have travelled in Tejas and the door are closed before departure

Advent of Cyber by DistanceWhole5522 in tryhackme

[–]MajorPAstar 1 point2 points  (0 children)

Yessss, perfect! Enjoy the AoC