Black Friday 2025
Your Networking Swiss-army Knife
It's that time of year again, another totally human Black Friday / Cyber Monday post for PortDroid:
πΈ >50% off Lifetime
π Port scanner for Android
π¨βπ» I wrote it Β―\_(γ)_/Β―
πΊ Share it somewhere useful and I'll buy you a drink
Buy it, capitalism demands it. Or don't.
portdroid.net/black-friday...
14.11.2025 14:42
π 2
π 0
π¬ 0
π 0
Mat's 25k Bath to Bristol Railway Run
Help Mat Rollings raise money to support Cool Earth
Since starting my training I've lost over 7kg, dropped 6% body fat, got 4 new Hawaiian shirts, and taken >5mins off my 5k time.
Am I ready? No. But I'll get through it by thinking about the post-run takeaway and bubble bath π Last chance to donateπ
www.justgiving.com/page/oh-no-2...
09.10.2025 09:03
π 2
π 0
π¬ 0
π 0
Stealthcopter
Overly-greedy regex replacements can break HTML sanitisation and lead to XSS. I’ve already pulled in over $6k from this bug class, and there are plenty mo
REGEXSS: How .* Turned Into over $6k in Bounties
Overly-greedy regex replacements can break HTML sanitisation & lead to XSS. Includes a live demo you can try exploiting it yourself!
sec.stealthcopter.com/regexss
#BugBounty #BugBountyTips #XSS #AppSec
24.09.2025 07:50
π 1
π 0
π¬ 0
π 0
Last week I found two regex bugs using regex β unauth XSS β 2Γ $2k = $4k in bounties π₯³ If youβve been putting it off, learn regex. Seriously.
/regex\+xss/\$4k/
#BugBounty #BugBountyTips
11.09.2025 07:49
π 1
π 0
π¬ 1
π 0
Physically & emotionally drained after the rollercoaster that was @yeswehack.bsky.social's LHE at #NullconBerlin2025
@teamviewer.com was a tough target & I nearly gave up but pushed through to snag 10th place overall π₯³
Thanks to @yeswehack.bsky.social for the support & awesome hosting!
#BugBounty
06.09.2025 08:14
π 1
π 0
π¬ 0
π 0
πNew plugin in the Caido Store!
Introducing "Exploit Generator" by @stealthcopter
Generate executable proof-of-concept (PoC) code from intercepted requests, in multiple languages and frameworks, such as Python, JavaScript, and Bash/cURL.
Check out more details: github.com/stealthcopte...
16.06.2025 12:25
π 5
π 3
π¬ 0
π 0
GitHub - stealthcopter/CaidoExploitGenerator
Contribute to stealthcopter/CaidoExploitGenerator development by creating an account on GitHub.
π Just released a new @caido.io plugin: Exploit Generator π£
Generate clean, working, customizable PoC exploit scripts instantly in Python, JS, Bash/cURL (more langs & frameworks coming soon)
Live now in the Caido Plugin Store: github.com/stealthcopte...
#Caido #BugBounty
02.06.2025 10:44
π 4
π 1
π¬ 0
π 0
Selfie of me running the half marathon with the Clifton suspension bridge in the background
Survived the Bristol Half Marathon (2hr40). Then immediately got a kebab and cheesecake because I am an athlete πͺ
Next: 25km Bath to Bristol for @coolearthaction.bsky.social. Please donate so the rainforest wins and I continue to question my life choices ππ
www.justgiving.com/page/oh-no-2...
12.05.2025 07:44
π 5
π 1
π¬ 0
π 0
Signed Hackers movie memorabilia and patchstack metch
Just received the coolest #ctf prize ever from @patchstack.com, signed Hackers memorabilia and swag!
πΎHACK THE PLANET! π
#BugBounty #HackThePlanet #Infosec #Hackers
10.04.2025 07:33
π 0
π 0
π¬ 0
π 0
It's wild that I'm getting paid for this nonsense
#WordPress #BugBounty
10.03.2025 20:31
π 1
π 0
π¬ 0
π 0
Mat's 25k Bath to Bristol Railway Run
Help Mat Rollings raise money to support Cool Earth
I'm running 25k to raise money for Cool Earth. This will be the furthest Iβve ever run, and itβs going to be incredibly difficult!
Any donations are massively appreciated! π Even if you donβt donate, check out the FAQ on my page, itβs worth a read!
www.justgiving.com/page/oh-no-2...
25.02.2025 08:49
π 1
π 0
π¬ 0
π 0
Stealthcopter
This writeup explores a Patchstack WordPress CTF challenge where a vulnerable custom footer feature allows for dynamic function execution. The challenge involve
Woop π₯³I placed 5th in the @patchstack.com CTF at #wcasia2025 π Here's my first write-up covering one of the trickier challenges, diving into PHPβs quirks, like mixed-case function calls and dynamic execution.
sec.stealthcopter.com/patchstack-c...
#CTF #WordPress #Hacking
24.02.2025 10:28
π 2
π 1
π¬ 0
π 0
Unsupported Browser | HackerOne
Second collaboration of the year π₯³ Many more to come π€I was awarded a $1,500 bounty on @Hacker0x01! hackerone.com/stealthcopter #TogetherWeHitHarder
12.02.2025 14:51
π 3
π 0
π¬ 0
π 0
Stealthcopter
tldr; On their own, these two vulnerabilities in JupiterX Core wouldn’t have been very impactful or likely to get a bounty; but by chaining them together,
Chained two 'meh' WordPress vulnerabilities into a high-impact exploit on JupiterX Core πΎ. From low-privilege SVG upload to full RCE, check out the full breakdown and PoC π οΈ
#BugBounty #WordPress #Cybersecurity
sec.stealthcopter.com/jupiterx-cha...
01.02.2025 08:47
π 2
π 0
π¬ 0
π 0
π§©ππ§ ππ΅βπ«π ββ‘οΈπ€―π©π₯³
π§©ππ§ ππ΅βπ«π ββ‘οΈπ€―π©π₯³
#ctf
22.11.2024 12:01
π 2
π 0
π¬ 0
π 0