numan turle (@numanturle) 's Twitter Profile
numan turle

@numanturle

security researcher, author of @xssreport

ID: 799628396

calendar_today03-09-2012 04:37:49

3,3K Tweet

4,4K Followers

1,1K Following

Kuzey Arda Bulut (@kuzeyardabulut) 's Twitter Profile Photo

🚨 New Blog Post: Exploiting CVE-2024-0582 via the Dirty Page Table Method! Discover how dangling pages can corrupt Page Table Entries (PTEs) and redirect user-space memory to kernel-space. Read the full analysis: kuzey.rs/posts/Dirty_Pa… #ExploitDevelopment #KernelSecurity

numan turle (@numanturle) 's Twitter Profile Photo

bezgin'e oturduk içtik çok güzel bir gün geçirdik. zamana not bıraktık bugüne ihanet etmemek için karar kıldık. yaşamın rüzgarına karşı sırtımızı verdik ve ortak yere noktaya sürüklenmek için sözleştik.

XSS Report (@xssreport) 's Twitter Profile Photo

🚀 New feature alert!🚀 Introducing Storage Data JavaScript This powerful JS code auto-sets stolen cookies, Session Storage, and Local Storage values exploited via 🔥XSS🔥vulnerabilities. Enhance your security testing now! 🔥 #XSS 🔥 #Cybersecurity 🔥

🚀 New feature alert!🚀  Introducing Storage Data JavaScript  This powerful JS code auto-sets stolen cookies, Session Storage, and Local Storage values exploited via 🔥XSS🔥vulnerabilities. Enhance your security testing now!  
🔥 #XSS 🔥 #Cybersecurity 🔥
XSS Report (@xssreport) 's Twitter Profile Photo

🚀 New Feature Alert on xss.report 🔥 We're leveling up your XSS game with AI-Powered XSS Analysis! 🧠💡 No more guessing — instantly see where your payload executes in the DOM! 💻 DOM tracing made simple 🎯 Precision payload debugging ⏱️ Save hours on manual testing

🚀 New Feature Alert on xss.report 🔥
We're leveling up your XSS game with AI-Powered XSS Analysis! 🧠💡
No more guessing — instantly see where your payload executes in the DOM!
💻 DOM tracing made simple
🎯 Precision payload debugging
⏱️ Save hours on manual testing
stypr (@brokenpacifist) 's Twitter Profile Photo

I bought Samsung 5G Mobile WiFi (SCR01) for personal use and I noticed some interesting bugs exist.. but Samsung denied fixing as it's an obsolete device... I might just move to Mudi V2(GL-E750V2) at this point... Here's the exploit btw gist.github.com/stypr/d8534fd0…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

We're back! This time, we're analyzing CVE-2025-34028 - a pre-auth Remote Code Execution vulnerability we discovered in Commvault - yet another enterprise-grade Backup and Replication solution. labs.watchtowr.com/fire-in-the-ho…

PRODAFT (@prodaft) 's Twitter Profile Photo

🚨Nebulous Mantis (also known as Cuba), a Russian-speaking cyber espionage group behind the 2023 NATO Summit campaign, has escalated operations in 2025. Their recent campaigns target sectors like tech, healthcare, and engineering, while still focusing on geopolitical interests.

🚨Nebulous Mantis (also known as Cuba), a Russian-speaking cyber espionage group behind the 2023 NATO Summit campaign, has escalated operations in 2025. Their recent campaigns target sectors like tech, healthcare, and engineering, while still focusing on geopolitical interests.
Ahmet Bilal Can 🦔 (@0xabc0) 's Twitter Profile Photo

I’ve developed a Binary Ninja plugin to load encrypted riscy-business bytecode. It locates the encryption key, decrypts the bytecode, auto-renames initial functions, resolves import table entries, and annotates VM-specific syscalls. An example binary is included in the repository

I’ve developed a Binary Ninja plugin to load encrypted riscy-business bytecode. It locates the encryption key, decrypts the bytecode, auto-renames initial functions, resolves import table entries, and annotates VM-specific syscalls. An example binary is included in the repository
Ahmet Bilal Can 🦔 (@0xabc0) 's Twitter Profile Photo

Do you know there's an official BLE service for cycling sensors? I didn't, so here's my DIY ESP32 with a reed sensor and a Samsung Health connection! New blog post: "Emulating a Bike Sensor" 👇

Do you know there's an official BLE service for cycling sensors? I didn't, so here's my DIY ESP32 with a reed sensor and a Samsung Health connection! New blog post: "Emulating a Bike Sensor" 👇
XSS Report (@xssreport) 's Twitter Profile Photo

Found an XSS vulnerability but received a $1,337 bounty? 😂 Keep grinding, hunters! Big 💸 awaits! Share your funniest bounty tale in reply! 🤓 xss.report #BugBounty #XSS I was previously awarded $300 for an XSS I found in WordPress Core. Hahaha yes, admin finds #XSS

Kirill Firsov (@k_firsov) 's Twitter Profile Photo

Excited to share that I reported CVE-2025-48745, Roundcube ≤ 1.6.10 Post-Auth RCE via PHP Object Deserialization. This bug has existed undetected for 10 years and affects over 53 Million hosts. Details and PoC will be published soon. We're giving time to all affected parties to

numan turle (@numanturle) 's Twitter Profile Photo

up up up uzmanlık alanı gerektirmiyor. sadece çık ve konuş. bu iş için uzmana değil araştırmacı ruha ihtiyaç var. evet o sensin başvur. güzel zaman olacak