Anton (therceman)
banner
therceman.bsky.social
Anton (therceman)
@therceman.bsky.social
Bug Bounty Hunter
www.therceman.dev
Bug Bounty Tip

SSRF: PDF iframe Injection

Cheers!
December 5, 2024 at 2:24 PM
Bug Bounty Tip

Parameter Manipulation:
Email Link Hijacking

Cheers!
December 3, 2024 at 2:06 PM
Bug Bounty Tip

XSS Filter Bypass: mXSS

Cheers!
November 28, 2024 at 11:22 AM
You can now download preview edition of my bug bounty book with 3 tips & tricks

book.therceman.dev

Cheers!
November 25, 2024 at 3:12 PM
Bug Bounty Tip

XSS WAF Bypass by multi-char HTML entities

fj translates to fj
>⃒ translates to > + [?]
&nvlt; translates to < + [?]

[?] - Unicode symbol
November 24, 2024 at 7:57 PM
My bug bounty book is now available on Lemon Squeezy, offering more payment options for your convenience.

Cheers!
November 22, 2024 at 11:33 AM
Bug Bounty Tip

You can hide your XSS payload inside SVG or Math element to bypass the XSS Sanitizer or WAF filter

Cheers!
November 21, 2024 at 8:07 PM
Book: Bug Bounty Tips and Tricks Vol.1
Edition: Pre-Sale
Tricks: 18 Tips and Tricks
Price: $13.37 (33% OFF)

🔗 book.therceman.dev
November 21, 2024 at 4:54 PM