Firing 8 Account Takeover Methods
Comprehensive guide covering 8 different account takeover methods with practical examples and exploitation techniques.
aka 0xmaruf
I break systems to make them safer. Security researcher, bug bounty hunter and sometimes CTF player.
Add your photo
I'm a passionate security researcher specializing in web application security. My journey in cybersecurity started with CTF competitions and evolved into professional bug bounty hunting.
I enjoy playing CTFs and building tools that save time during recon. My approach combines manual testing expertise with automation to find vulnerabilities that others might miss.
When I'm not hunting bugs, I write detailed writeups to help the community learn from my findings. I believe in responsible disclosure and making the internet a safer place, one vulnerability at a time.
Active on major bug bounty platforms, consistently finding and responsibly disclosing vulnerabilities.
Detailed technical writeups to help the community learn.
Comprehensive guide covering 8 different account takeover methods with practical examples and exploitation techniques.
Essential grep commands and patterns for bug bounty hunters to analyze JavaScript files for sensitive endpoints and secrets.
Tips and tricks for Burp Suite Community Edition users to maximize their testing capabilities without the Pro version.
Case study of finding vulnerabilities in a private program that utilizes Salesforce CRM infrastructure.
Simple restriction bypass on Fiverr platform. A detailed walkthrough of identifying and exploiting access control issues on a major marketplace platform.
Acknowledged by industry-leading companies for responsible security disclosures and continuous professional development.
eLearnSecurity Junior Penetration Tester
INE | eLearnSecurity
Practical Network Penetration Tester
TCM Security
Bug Bounty Hunter
HackerOne / Bugcrowd
Various
Conferences, CTFs, and community engagements.
Competed against security researchers in Bangladesh and reached the finals.
Organized and hosted a local CTF event for newcomers in cybersecurity.
Panel discussion on modern web security threats and responsible disclosure.
Want me to speak or run a workshop?
Invite Me to Speak