1. X
  2. shubs
Log inSign up
shubs
2,234 posts
shubs profile banner
user avatar

shubs

@infosec_au
Co-founder, security researcher. Building an attack surface management platform, @assetnote
halcyon
assetnote.io
Joined August 2013
1,971
Following
59.3K
Followers
RepliesRepliesMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • user avatar
    shubs
    @infosec_au
    Aug 24
    I think the most accurate phrase for the time we live in right now in offensive security, bug bounties, and vulnerability research is "the age of collisions" - what an exciting time, well, not really for those who had a monopoly on certain bugs
  • user avatar
    shubs
    @infosec_au
    Aug 1
    Things are getting weird (or interesting?) in the vulnerability research space. I published some of my personal thoughts on what we're seeing and what our broad strategy is here:
    shubs.io
    frontier class vulnerabilities: it gets worse before it (maybe) gets better
    Early in my career as a consultant, I was put on source code review engagements despite not being experienced. This forced me to deliver on projects that, looking back, were of a ludicrous size and...
  • user avatar
    shubs
    @infosec_au
    Jul 30
    v12 has been finding some pretty good bugs. a good product with a team that understands offensive security. i’m sure many more fun disclosures to come.
    user avatar
    V12
    @v12sec
    Jul 30
    Article cover image
    Article
    How to raise a $10M Seed Round
    Earlier this month, we won a $2.5M bug bounty–the largest bounty ever received by an AI agent. This was a bug in a major blockchain, and it put >$100M of funds at risk. We found the bug fully...
  • user avatar
    shubs
    @infosec_au
    Jul 18
    Note on WordPress pre-auth RCE (CVE-2026-63030). There are SQLi poc's out there, but RCE PoC has not yet been exploited in the wild. Will only release our technical post if we have proof of exploitation. Our RCE payload does NOT require poorly configured MySQL.
  • user avatar
    shubs
    @infosec_au
    Jul 14
    Our research team at @SLCyberSec discovered a pre-auth RCE in ServiceNow by bypassing their sandbox. Read @hash_kitten's write up here:
    slcyber.io
    Smashing the ServiceNow Sandbox – Pre Authentication RCE
    Searchlight Cyber researchers discover a second pre-auth RCE in ServiceNow (CVE-2026-6875) by escaping the script sandbox via a JavaScript gadget chain, allowing full instance compromise without...