Log inSign up
André Baptista
1,656 posts
user avatar
André Baptista
@0xacb
Hacker grinding for L1gh7 and Fr33dφm, straight outta the cosmic realm. Co-founder @ethiack
Multiverse of Hacking
0xacb.com
Joined April 2013
838
Following
19.1K
Followers
  • Pinned
    user avatar
    André Baptista
    @0xacb
    Aug 7, 2024
    We won the MVH title at #h1702 🔥 @NahamSec @ajxchapman
    00:00
    39K
  • user avatar
    André Baptista
    @0xacb
    Jul 14, 2025
    DMARC can reveal more domains associated with a target. dmarc.live/info/<target-domain> allows you to find domains using the same DMARC record. Check it out 👇 There's also a python tool: github.com/Tedixx/dmarc-s…
    00:00
    66K
  • user avatar
    André Baptista
    @0xacb
    Oct 21, 2025
    Found an XSS but got blocked by the CSP? cspbypass.com has a compiled list of ways to bypass the Content-Security Policy. Check out the video below 👇
    00:00
    48K
  • user avatar
    André Baptista
    @0xacb
    Apr 21, 2019
    Just released viewgen, a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys or web.config files. All algorithms supported. TL;DR: Got a web.config file or LFI on ASP.NET? Pop a shell! github.com/0xACB/viewgen
  • user avatar
    André Baptista
    @0xacb
    Dec 22, 2018
    We did it 🔥 RCE on Steam Client! We’ll publish a writeup if we have permission
    user avatar
    Vinnie
    @kernelpaniek
    Dec 2, 2018
    Got a nice bufferoverflow on steam, but unable to exploit due all the added null bytes :’(
  • user avatar
    André Baptista
    @0xacb
    Apr 3, 2025
    Have you used @rez0__'s ffufai yet? It's like ffuf but ffufai it automatically suggests file extensions for fuzzing based on the target URL and its headers! It's awesome 🔥
    37K
  • user avatar
    André Baptista
    @0xacb
    Nov 21, 2022
    I'm back with a new tool. Happy to release REcollapse! Simple bypasses can result in impactful bugs in hardened targets. Wanna understand how? Check out my blog post and slides from @Bsideslisbon 2022: 0xacb.com/2022/11/21/rec… github.com/0xacb/recollap…
  • user avatar
    André Baptista
    @0xacb
    Apr 21, 2025
    This email domain confusion technique from @garethheyes is so cool! Some really weird behavior can be found between different mail agents and the right characters/symbols 🤔
    34K
  • user avatar
    André Baptista
    @0xacb
    May 15, 2025
    Hidden or disabled fields are commonly overlooked, but they can still open the door to some cool bugs. Try creating a bookmarklet to instantly reveal these fields. Here are some quick examples you can copy and paste: 🔖 Enable all disabled or readonly fields:
    00:00
    47K
  • user avatar
    André Baptista
    @0xacb
    Mar 29, 2025
    This @bishopfox tool is next level! 🚀 Eyeballer uses AI to analyze screenshots and sorts them into categories based on appearance, including: 👀 Old-looking pages, 👀 Login pages, 👀 404 responses 👀 Web apps 👀 Parked domains Get your eyeballs around this👇
    00:00
    24K
  • user avatar
    André Baptista
    @0xacb
    Jul 2, 2025
    Nginx normalizes paths (/../, %2e, etc.) before applying access rules like: location = /admin { deny all; } But backends like Node.js or PHP handle decoding again, and differently. Requesting /;admin or /admin%2f..%2f might bypass Nginx’s block, but get normalized to /admin by
    25K
  • user avatar
    André Baptista
    @0xacb
    Apr 24, 2025
    RFC 2047 "encoded-word" is crazy! It lets you smuggle encoded payloads into email addresses and the craziest thing is that some parsers decode it before validation 👇 Shout out to @garethheyes for this  🔥
    00:00
    32K
  • user avatar
    André Baptista
    @0xacb
    Dec 5, 2018
    GitHub Desktop RCE (OSX) Bug Bounty writeup: pwning.re/2018/12/04/git… Thank you @GitHubSecurity for the bounty!
  • user avatar
    André Baptista
    @0xacb
    Nov 10, 2025
    When testing GraphQL APIs make sure to run graphw00f (github.com/dolevf/graphw0…) to fingerprint the specific GraphQL implementation the application is running. Then you can review the Threat Matrix to get likely attack vectors.
    00:00
    39K

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up