I discussed a small but effective security vulnerability I encountered in the Truecaller bug bounty program on HackerOne. Using this vulnerability, facing DoS and Brute Force attacks becomes inevitable. The basic reason, though very simple, is probably that the developer was sleepy :)
00:00 Introduction
00:19 Form Checking
01:30 Bypass Recaptcha Login Test
02:40 Automate Register Script (ChatGPT and Python)
04:52 Run script with threading
05:30 Finish
Follow NightBirdSec on:
-----------------
X: NghtBirdSec
#ِNightBird #ِNightBirdSec #bugbounty #SQLMAP #BYPASS #BYPASSCAPTCH #PYTHON #CHATGPT #InfoSec #CyberSecurity #BugHunting