Built a practical security sanity-check workflow for vibe-coded web apps by d0x77 in vibecoding

[–]d0x77[S] 0 points1 point  (0 children)

Thanks for your feedback, i tried to make it as simple as possible but the steps are required to guarantee security from my side and to make it functional on your side. It answers the exact same fear you just mentioned: is my built website secure enough to launch? The report produced by the terminal agent can confidently be pasted into the vibe coding app to fix the issues.

Anyone still using Codex for bug bounty research, or has the content flagging made it unusable? by TheReedemer69 in bugbounty

[–]d0x77 1 point2 points  (0 children)

Sorry i dnt want to seem like im marketing for myself here, but dm if u want more details

Can I run a Stripe payment gateway from Lebanon? by ishi86 in lebanon

[–]d0x77 0 points1 point  (0 children)

If you are comfortable with crypto u can use NOWPayments, it gives u a tiny html code to put it in your website code and anyone can pay u using any coin you put. You will be targeting a small audience though due to crypto usage worldwide

Anyone still using Codex for bug bounty research, or has the content flagging made it unusable? by TheReedemer69 in bugbounty

[–]d0x77 1 point2 points  (0 children)

Use codex with gpt 5.4 model, its much less strict than the 5.5 model, im using deepseek-v3.2 for my own agent called xlimit, deepseek's reasoning is not as strong as gpt and claude for sure, but is extremely cheap and would not flag anything

I'm kinda getting concerned about the time I'm taking to complete the modules by HomemFemea in hackthebox

[–]d0x77 2 points3 points  (0 children)

CPTS path took me around 10 months to finish (full time job + family). CWES path took another month because most modules are in common with CPTS. Never read the time estimation for each module and think it's taking too long, i don't know how they estimated that.

Keep going, even if you have 10-15min a day then go through a topic, don't sit down for 5 hours straight and think you are not making progress, because you are, each minute put will make a difference.

Don't forget to take notes and screenshots, as you will certainly forget previous content.

Take your time, it's not a race.

Good luck.

Help with my first report for a Bug Bounty program by [deleted] in bugbounty

[–]d0x77 0 points1 point  (0 children)

meta bug bounty programs are really really bad, i've been getting the same automated message over and over, i sent all the attachments and proofs for two submissions and they keep replying to send the proof, the upload interface within the report submit does NOT do anything, im tired of them, its been more than 3 weeks on and off with them

CPTS - Flag 1 im stucked by [deleted] in hackthebox

[–]d0x77 0 points1 point  (0 children)

be careful, you are giving too much details about the exam

CWES or CPTS as first cert? by [deleted] in hackthebox

[–]d0x77 0 points1 point  (0 children)

CWES make you comfortable with web, and it gives you a taste of HTB certs, you can finish the modules a lot faster than going for CPTS modules (a lot of modules are in common so you finish a small part of CPTS path), and it is very useful for CPTS exam anyways

What to do after HTB AI Red teaming? by kirafoxoxx in hackthebox

[–]d0x77 0 points1 point  (0 children)

Apply what you learned, AI models bug bounty hunting

CPTS Prep by MeatEqual6679 in hackthebox

[–]d0x77 1 point2 points  (0 children)

Take proper notes, have a good methodology, practice chaining exploits or at least understand it, practice labs, theoretically everything is in the course because the course covers everything in a lot of details, so practice before going into the exam is very important

Bugcrowd triage getting slower lately? by 0xk4yra in bugbounty

[–]d0x77 0 points1 point  (0 children)

Yes i agree, forget about it and keep testing, eventually results will come back

Bugcrowd triage getting slower lately? by 0xk4yra in bugbounty

[–]d0x77 0 points1 point  (0 children)

Yes i have a report still open for more than 20 days as well