Harsh Jaiswal
@rootxharsh
Research at @httpvoid0x2f @pdiscoveryio.
ID: 3177957894
28-04-2015 09:23:38
3,3K Tweet
21,21K Followers
1,1K Following
Last year I found a XSS bug in Google IDX here's a detail writeup about it. Hope you will enjoy it's kinda lengthy :p Shoutouts to Matan Berson for finding the original bug in Gitlab and Sreeram KL Sivanesh Ashok for the required chains to complete the exploit. sudistark.github.io/2025/07/02/idx…
Whilst most companies launch with buzzwords. Hacktron AI launches with bugs. Co-founders Zayne, Mohan and Harsh present Hacktron: their first AI-powered pentest. Hacktron’s tagline is PoC || GTFO, anything else would be noise. Full intro and pentest report in link below.
Securing Gumroad with Hacktron AI Three months ago, Hacktron was still early. Hacktron AI and Harsh Jaiswal were finding 0-days targeting specific vulnerabilities on OSS software. Then we ran a full pentest-style scan on a big open-source project. The results were insane. 🧵
s1r1us Gumroad Hacktron AI Harsh Jaiswal Interesting stuff! Love the way your team is building in public and sharing more than just marketing.
Hack so big that even Hacktron AI is affected. We use a service that use the affected backend.
A few months ago, Harsh Jaiswal and I gave a talk, sharing the slides here in case they’re helpful to anyone.