Feb. 26, 2023, 1:19 p.m. | Suprit Pandurangi

InfoSec Write-ups - Medium infosecwriteups.com

Hello all, hope y’all are doing great. My name is Suprit, Hacker name- s3ctat0r and today we’re going to learn a critical vulnerability. The bug has been fixed now so I’m able to disclose this story publicly.

I believe that recon is the real success for bug hunting. We were hunting on SHAREit’s Vulnerability Disclosure Program i.e. Bug Bounty Program. In recon phase I generally use subfinder and assetfinder to enumerate all the subdomains but this time I thought to …

bounty bug bug bounty bug bounty program bug hunting critical critical vulnerability cybersecurity disclosure doing great hacker hacking hello hope hunting learn log4j name program rce recon shareit story vulnerability vulnerability disclosure

Network Security Administrator

@ Peraton | United States

IT Security Engineer 2

@ Oracle | BENGALURU, KARNATAKA, India

Sr Cybersecurity Forensics Specialist

@ Health Care Service Corporation | Chicago (200 E. Randolph Street)

Security Engineer

@ Apple | Hyderabad, Telangana, India

Cyber GRC & Awareness Lead

@ Origin Energy | Adelaide, SA, AU, 5000

Senior Security Analyst

@ Prenuvo | Vancouver, British Columbia, Canada