tier BRONCE · command injection hunter
@flyingwhales ha desbloqueado
Command Injection Hunter
Inyección de comandos: del input al shell remoto.
BBLABS.ESLogro Desbloqueado
TIER BRONCE
// achievement_unlocked
Command Injection Hunter
Inyección de comandos: del input al shell remoto.
1labs command injection
achieved_by@flyingwhalesMiembro desde abr 2026
bblabs.es// real bug bounty practice
tier
BRONCE
progreso
1
labs command injection
siguiente tier
3
PLATA
sobre_el_hacker
El track record de @flyingwhales
labs resueltos
53
flags capturadas
29
// labs con más bounty resueltos
Difícil$4,450
Business Logic Error - Payment Bypass via Client-Side Trust Abuse
jul 2026
Insane$1,500
Wizard Takeover ATO ( IDOR + CSRF )
ago 2026
Insane$1,200
Stored XSS to Domain Takeover
jul 2026
Difícil$1,100
Web Cache Poisoning → XSS con bypass de WAF → ATO one-click del asesor
jul 2026
Media$1,000
Payment Bypass via Business Logic Flaw
jul 2026
Media$750
self_svg_XSS — Self-XSS → Bot-Assisted ATO via SVG upload
jul 2026