Open in app

Sign in

Write

Sign in

Prince Roy(RoyzSec)
Prince Roy(RoyzSec)

256 Followers

Home

Lists

About

Pinned

Cloudflare Bypass leads to RXSS[Reflected-Cross Site Scripting] in Microsoft

Har Har Mahadev! This is Prince Roy, a security researcher, also known as royzsec. Back with another write-up about my latest finding[Cross Site Scripting] at Microsoft domain by bypassing Cloudflare. Are you curious about the whole process and my mindset for finding?

Bugbounty

4 min read

Cloudflare Bypass leads to RXSS[Reflected-Cross Site Scripting] in Microsoft
Cloudflare Bypass leads to RXSS[Reflected-Cross Site Scripting] in Microsoft
Bugbounty

4 min read


Pinned

How I ethically hacked NASA via Google Dorking.

Har Har Mahadev! This is Prince Roy, a cyber security researcher. Recently, I have discovered an information disclosure vulnerability in one of the NASA domains by just Google hacking or dorking.

Cybersecurity

2 min read

How I ethically hacked NASA via Google Dorking.
How I ethically hacked NASA via Google Dorking.
Cybersecurity

2 min read


Pinned

How I ethically hacked one of the domains of the United Kingdom

Har Har Mahadev! This is Prince Roy, a cyber security researcher. Few months back I found a security issue on the one domain of [gov.uk]. That was quite easy to find. Are you guys excited to know how I found it?

Cybersecurity

3 min read

How I ethically hacked one of the domains of the United Kingdom
How I ethically hacked one of the domains of the United Kingdom
Cybersecurity

3 min read


Pinned

How did I find RXSS within 10 minutes?

Har Har Mahadeva. Hey, this is Prince Roy, a cyber security researcher. A few days ago, I found two RXSS in the domain of the Department of Commerce of the United States of America. I discovered those within ten minutes!!

Cybersecurity

3 min read

How did I find RXSS within 10 minutes?
How did I find RXSS within 10 minutes?
Cybersecurity

3 min read


Oct 15

IFrame injection in one of the domains of the National Institute of Standards and Technology (NIST).

Har Har Mahadev! This is Prince Roy,a cyber security researcher. Back with another vulnerability finding in one of the domains of the National Institute of Standards and Technology (NIST). Are you excited guys for this?

Cybersecurity

3 min read

IFrame injection in one of the domains of the National Institute of Standards and Technology (NIST).
IFrame injection in one of the domains of the National Institute of Standards and Technology (NIST).
Cybersecurity

3 min read


Sep 29

How I exploited CVE-2023–36845 and got root access in one domain.

Har Har Mahadev! Hey, this is Prince roy, a cyber security researcher. Recently, CVE-2023–36845 has been published which allows attackers to gain root access to the victim domain. Description: A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows…

Cybersecurity

3 min read

How I exploited CVE-2023–36845 and got root access in one domain.
How I exploited CVE-2023–36845 and got root access in one domain.
Cybersecurity

3 min read


Sep 22

HTML injection leads to JS injection in the State of California domain.

Har Har Mahadev! This is Prince Roy, a cyber security researcher. Last month, I found an HTML+JS injection in one of the domains of the state of California. And thanks to Aditya Shende sir for his mentorship.

Cybersecurity

3 min read

HTML injection leads to JS injection in the State of California domain.
HTML injection leads to JS injection in the State of California domain.
Cybersecurity

3 min read


Sep 15

How I escalated HTML injection to P3 vulnerability in the U.S. of Education domain.

Har Har Mahadev !Hey I, Prince roy, a cybersecurity researcher, found a security issue in one domain of the US Department of Education. I found an HTML injection on their website and I escalated that into a P3 vulnerability.

Cybersecurity

3 min read

How I escalated HTML Injection to P3 vulnerability in the US Department of Education domain.
How I escalated HTML Injection to P3 vulnerability in the US Department of Education domain.
Cybersecurity

3 min read


Sep 13

How I was awarded Hacker Coin at Hackerone from the MOD [Ministry of Defence of the UK]

Har Har Mahadev! This is Prince Roy, a cybersecurity researcher. Recently, I was awarded a Hacker Coin because of my finding on MOD (Ministry of Defense) at Hackerone.

Cybersecurity

2 min read

How I was awarded Hacker Coin at Hackerone from the MOD [Ministry of Defence of the UK]
How I was awarded Hacker Coin at Hackerone from the MOD [Ministry of Defence of the UK]
Cybersecurity

2 min read


Sep 7

JUST FOR FUN

JUST FOR FUN

1 min read

JUST FOR FUN
JUST FOR FUN

1 min read

Prince Roy(RoyzSec)

Prince Roy(RoyzSec)

256 Followers

Cyber Security Researcher | Ex-GPCSSI2021

Following
  • InfoSec Write-ups

    InfoSec Write-ups

  • Pratik Dabhi

    Pratik Dabhi

  • Amitkhandebharad

    Amitkhandebharad

  • Biswajeet Ray

    Biswajeet Ray

  • Anton (therceman)

    Anton (therceman)

See all (13)

Help

Status

About

Careers

Blog

Privacy

Terms

Text to speech

Teams