Skip to content

Instantly share code, notes, and snippets.

View hackermondev's full-sized avatar
🛠️
building

daniel hackermondev

🛠️
building
View GitHub Profile
@hackermondev
hackermondev / zendesk.md
Last active November 21, 2024 11:42
1 bug, $50,000+ in bounties, how Zendesk intentionally left a backdoor in hundreds of Fortune 500 companies

hi, i'm daniel. i'm a 15-year-old with some programming experience and i do a little bug hunting in my free time. here's the insane story of how I found a single bug that affected over half of all Fortune 500 companies:

say hello to zendesk

If you've spent some time online, you’ve probably come across Zendesk.

Zendesk is a customer service tool used by some of the world’s top companies. It’s easy to set up: you link it to your company’s support email (like [email protected]), and Zendesk starts managing incoming emails and creating tickets. You can handle these tickets yourself or have a support team do it for you. Zendesk is a billion-dollar company, trusted by big names like Cloudflare.

Personally, I’ve always found it surprising that these massive companies, worth billions, rely on third-party tools like Zendesk instead of building their own in-house ticketing systems.

your weakest link

@hackermondev
hackermondev / n
Created September 27, 2024 12:48
n
OTc5MTY3MDA4NDk3MjI5ODQ0.GVt1b-.ajuAoBYZ-SEePbEhVu5GheUEN2FIjbWpS2GENw
MTA5MjUzMDM2NDQ1MjQ0NjI2MQ.GLmcyD.xUHHhnlj4uJXD9RgC2RX-PunqkoL0FKpUWxlVI
MTEzNjg3NzQ2ODY2MjM4Njc5MQ.GIII8w.IX0G-OTtbm3Ua9RmTiAbmJbINlYzLWw2AM_Goc
OTAyMjM5MzMzMDY5NzcwODEz.Iohkn8ZA_SsNAkd0kxO8r2STCKI
OTAyMjM5MzMzMDY5NzcwODEz.GD7Ptw.wQSPcOpBXwMoBpMvSjh_NT22EV9roPrQErL3ZQ
@hackermondev
hackermondev / ClydeAI-Jailbreak.md
Last active November 15, 2024 14:13
Discord ClydeAI jailbreak
MTA2NDUzMTg1Mjc1ODYzNDYyNw.GzpILk.FjMWJY3HI5P9o1oLx71kA1BWgfg8o2r92lF8dE
@hackermondev
hackermondev / api endpoints.md
Last active November 21, 2024 14:46
discord api endpoints

List of every single Discord API endpoint used on the client

Last updated: August 16, 2023

https://discord.com/api/v9

Endpoint Name path
@hackermondev
hackermondev / replit subdomains.txt
Last active July 13, 2022 13:24
List of all public Replit subdomains
List of all Replit subdomains
Someone wanted me to post this so I did
Most of them are used for internal stuff and you can't access them
------------------------------------------------------------------------------------------------
replit.com|104.18.12.38,104.18.13.38
art.replit.com|34.120.57.62
ask.replit.com|64.62.250.111
blog.replit.com|104.18.12.38,104.18.13.38
boops.magic.teams.replit.com|34.120.57.62