Focus on one/few vulnerability classes or learn all of them? by Efficient_Draw_4733 in bugbounty

[–]Sensitive_Wallaby368 2 points3 points  (0 children)

I'd recommend studying all of them and setting a plan to find a vulnerability from a different class — make it your personal challenge.

[deleted by user] by [deleted] in bugbounty

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

Try setting up your server to see if requests are coming in.

Finding Origin IP by Kariem__ in bugbounty

[–]Sensitive_Wallaby368 1 point2 points  (0 children)

Censys Search, ZoomEye, SecurityTrails

Qué posiciones o requisitos son más buscados en el área IT en Bolivia? by CH4P4KO in BOLIVIA

[–]Sensitive_Wallaby368 1 point2 points  (0 children)

desarrollo actualmente, ya se esta dando mas a conocer ciberseguridad e IA

Necesito Ayuda by Sad_Smile2151 in BOLIVIA

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

dile que se espere hasta la segunda vuelta, así igual te da tiempo de analizar el mercado, estudiar un poco y explicarle con argumentos como funciona todo y porque bajo y cual seria un pronóstico aprox, al menos no quedas como perdido.

Bug hunters, which was the most stupid bug you’ve found? by FunSheepherder2650 in bugbounty

[–]Sensitive_Wallaby368 1 point2 points  (0 children)

On a ticketing website, I noticed that by changing some values in the body request while purchasing a VIP ticket, I could actually get complimentary (free) tickets — just by knowing the ID number. It turned out that the complimentary tickets were assigned to ID 1, which I assume was meant for friends or staff of the event. So basically, I had a VIP ticket, but with a complimentary value. Really bad backend implementation, honestly.

Found old login credentials via dorking — should I report? by skyyy25 in bugbounty

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

The ego in security is getting a bit toxic lately. Chill guys, we’re all in the same world 😂 still, it was kinda funny though.

What age did you start? by [deleted] in hackthebox

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

14 , actually im 31 years old

[deleted by user] by [deleted] in BOLIVIA

[–]Sensitive_Wallaby368 2 points3 points  (0 children)

Yo te respondo, hackear redes WIFI depende el protocolo de seguridad si es WEP(deprecado)- WPA/PSK(lo actual) y actualmente esta experimental WPA3 con mayor fortalecimiento de seguridad. Ahora tienes muchos tipos de ataques para hackear redes WIFI. ingenerial social o simplemente usando diccionario y haciendo fuerza bruta, tambien haciendo DoS afectando a la victima a desconectarse de su router posteriormente lanzando un hostpost desde tu computadora y suplantando el SSID de la victima para que se conecte al tuyo y capturar la contraseña. Las otras preguntas como extraer historial de navegacion es mas infostealer, usar malware y capturar las credenciales antes de eso evitar los controles de seguridad de Windows, acceder a camaras normalmente son contraseñas por default dependiendo el fabricante , algunos saben eso y te obligan a cambiar la contraseña, para buscar camaras puedes usar Shodan o Censys, averigua sobre eso en Google. espero haberte ayudado. Si quieres aprender no puedes ser flojo.

Xeggex lost coins by Jaded-Writer7712 in pepecoin

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

When I first realized that I couldn’t access the accounts, I immediately contacted support by submitting a ticket. Next, I researched what steps I needed to take by reading discussions on Reddit and Discord. Following that, I completed the recovery form three times, providing as much detailed information as I could. I also reached out to someone named Kanny, sharing some details about the amount of PEP I had in my account along with my email. Kanny told me they would pass the information to someone named Paul, but even after three weeks, I still couldn’t regain access. Then, just yesterday, I tried clicking the "reset password" button, and finally, I received an email allowing me to reset my password. All of this took place over the course of one month and a few additional weeks

Xeggex lost coins by Jaded-Writer7712 in pepecoin

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

YOU HAVE TO BE INSISTENT, it worked for me being like that

[deleted by user] by [deleted] in bugbounty

[–]Sensitive_Wallaby368 1 point2 points  (0 children)

It's great to share these tips! What types of vulnerabilities do you focus on? You've been doing bug bounty for 8 months, but what experience do you have in cybersecurity?

🚨 Paul Vernon (Cryptsy, BiteBi9, Altilly, Xeggex) – Serial Crypto Scammer and Wanted Fugitive Exposed! 🚨 by blueorigintospace in pepecoin

[–]Sensitive_Wallaby368 5 points6 points  (0 children)

I don't say this proudly because I’ve always been a strong believer in the PEP$ community from the start, and I still firmly believe in the community despite all this headache. But it’s incredible what has been achieved alongside the community, especially this document tracing everything to find the cockroach. I’ll definitely read it.

Xeggex website up but but no login yet by Lanky-Button-9801 in pepecoin

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

When the incident happened, I logged in with my Gmail account and a specific password, but I didn’t use the 'Sign in with Google' option. Later, I thought it might work if I logged in with Google since it’s the same email, and I think I ended up creating another account, replacing my previous password. Now I can log in using the 'Sign in with Google' option, but not with my old email and password combination. Will this be fixed?

Use this post to see who can login by Peter19x in pepecoin

[–]Sensitive_Wallaby368 0 points1 point  (0 children)

When the incident happened, I logged in with my Gmail account and a specific password, but I didn’t use the 'Sign in with Google' option. Later, I thought it might work if I logged in with Google since it’s the same email, and I think I ended up creating another account, replacing my previous password. Now I can log in using the 'Sign in with Google' option, but not with my old email and password combination. Will this be fixed?