tier BRONCE · command injection hunter
@zynap ha desbloqueado
Command Injection Hunter
Inyección de comandos: del input al shell remoto.
BBLABS.ESLogro Desbloqueado
TIER BRONCE
// achievement_unlocked
Command Injection Hunter
Inyección de comandos: del input al shell remoto.
1labs command injection
achieved_by@zynapMiembro desde jul 2026
bblabs.es// real bug bounty practice
tier
BRONCE
progreso
1
labs command injection
siguiente tier
3
PLATA
sobre_el_hacker
El track record de @zynap
labs resueltos
14
flags capturadas
9
// labs con más bounty resueltos
Difícil$4,450
Business Logic Error - Payment Bypass via Client-Side Trust Abuse
jul 2026
Insane$1,500
Wizard Takeover ATO ( IDOR + CSRF )
jul 2026
Insane$1,200
Stored XSS to Domain Takeover
jul 2026
Insane$700
SQL Injection en identificador de tabla → RCE por PostgreSQL `COPY … FROM PROGRAM`
jul 2026
Insane$600
0-click-ATO — Account Takeover via OTP Brute Force + Email Case-Sensitivity Bypass
jul 2026
Media$200
HTTP Method Override & Admin Bot Exploitation
jul 2026