Report a Vulnerability
Submit, help fixing, get kudos.
Start a Bug Bounty
Run your bounty program for free.
746,470 coordinated disclosures
438,156 fixed vulnerabilities
1148 bug bounties with 2,200 websites
20,677 researchers, 1257 honor badges

Cyber_World | Security Researcher Profile


Security researcher Cyber_World has already helped fix 274 vulnerabilities.



Researcher reputation:  840

Real name:
Praveen Yadav

How to contact me:
[email protected]

Alternative Contacts:
[email protected]

Award / Bug Bounty I prefer:
i prefer bug bounty/swag/hof/vouchers
Paypal id - https://www.paypal.me/pk12397

Recommendations and Acknowledgements | Full List:

@Azatotht     21 January, 2021
    Twitter Azatotht Sylvain from Quebec Amerique:
Thanks for pointing out a public phpinfo() on our website. A++
@milano24ore     21 January, 2021
    Twitter milano24ore Olaf from milano24ore:
Thank you for your tip for finding a vulnerability on the website. Very quick reply.
@yuhiguchi1     20 January, 2021
    Twitter yuhiguchi1 yu-higuchi from ctc:
We appliciate your help with the vulnerability.
The response to inquiries was quick, which was very helpful.
@anTon_x3     20 January, 2021
    Twitter anTon_x3 anTon_X3 :
Thank you for finding security issues on my website! keep it up!
@rantoniazzi     19 January, 2021
    Twitter rantoniazzi Roberto Antoniazzi from Centro per la Cooperazione Internazionale:
Thanks for pointing out a public phpinfo(). Very fast contact.
@driesvanhaver     19 January, 2021
    Twitter driesvanhaver Dries from not disclosed:
We were informed of a vulnerability. Thank you to Praveen for telling us it existed.
@snowdarkz     19 January, 2021
    Twitter snowdarkz Quanruthai from not disclosed:
Thank you very much for the help with the vulnerability. Very fast contact.
@wandelzoek     18 January, 2021
    Twitter wandelzoek Wandelzoekpagina from Wandelzoekpagina:
Thanks for finding a vulnerability on the website. Thanks to your tip, I could repair the issue and keep the website safe
@eduardo_sales     17 January, 2021
    Twitter eduardo_sales Eduardo Sales from Papo de Gordo:
Praveen was very helpful in providing information about a security issue in our site. With his help, we were able to correct eveything and keep our site safe.
@mhmitu     15 January, 2021
    Twitter mhmitu Mihai from Engie:
Hi Praveen,
Thanks for the help with the vulnerability. Very fast and friendly contact.
@SilensStudio     14 January, 2021
    Twitter SilensStudio Simon from PlayDay:
Thank you very much for informing us about our access vulnerability! The world needs more good guys like you! A+!
@mailtest15     13 January, 2021
    Twitter mailtest15 mailtest from mailtest:
Thanks for the help with the vulnerability. Friendly and fast contact
@thailandunique     13 January, 2021
    Twitter thailandunique Lee from Thailand Unique:
Thank you very much for bringing a website vulnerability to my attention.
@Eginity     12 January, 2021
    Twitter Eginity Scott from Eginity:
Thanks for pointing out a public phpinfo();
@nixonson4     6 January, 2021
    Twitter nixonson4 nixonson from LOOM:
Very fast response, provided us with all the detailes. Keep up the good work!
@SewSimpleBags     5 January, 2021
    Twitter SewSimpleBags Deb from not disclosed:
We were informed of a vulnerability via this site. Thank you to Praveen for telling us it existed.
@feuerwehr_lich     5 January, 2021
    Twitter feuerwehr_lich Marc from Feuerwehr Lich:
Helped us identifing a not needed file which privided information about underlying system. Thank you for your Work!
@PingPlotter     4 January, 2021
    Twitter PingPlotter Nate from Pingman Tools:
Thanks a ton for finding a security vulnerability on our site. You definitely have our recommendation.
@_holzmann     4 January, 2021
    Twitter _holzmann Philip from Heimspiel:
Many thanks for finding a public "phpinfo();"
@KabarettN     3 January, 2021
    Twitter KabarettN KabarettN from Kabarett-News:
Cyber_World was very courteous and provided the information needed to solve the problem very quickly. Your work is much appreciated, sir!
@KabarettN     2 January, 2021
    Twitter KabarettN KabarettN from Kabarett-News:
Cyber_World was very courteous and provided the information needed to solve the problem very quickly. Your work is much appreciated, sir!
@Technologywibe     29 December, 2020
    Twitter Technologywibe Jake from Techwibe:
Helped us to find the issue and our devs was able to fix it. Thanks for your fast replies and reporting the issue.
@nglCasanova     29 December, 2020
    Twitter nglCasanova Angel :
Praveen reported a minor security issue and we could fix it immediately. Thanks a lot for letting us know!
@Teaviews     24 December, 2020
    Twitter Teaviews SFINGLE from CB:
Very quick communication and very helpful. Thank you and have a great year!
@JVos63     24 December, 2020
    Twitter JVos63 Jürgen Voskuhl from itcv GmbH:
Kurze Reaktionszeit, klare Hinweise auf die Probleme. Deshalb meine Empfehlung & ein dickes Dankeschön!
@spinetraknet     22 December, 2020
    Twitter spinetraknet Renzo from hsk1830.de:
very quick response helped us fix the issue very quickly
@SaurosVerlag     21 December, 2020
    Twitter SaurosVerlag Sebastian from Sauros Verlag:
Thank you very much for your help. And to let us know how we keep our website safe. Good job!
@JoJoFunParties     21 December, 2020
    Twitter JoJoFunParties Andy Wood from JoJoFun:
Praveen found a PHP file on our site that posed a security risk and generously informed us by email. The file has since been removed. Thanks so much!
@hair_xtensions     20 December, 2020
    Twitter hair_xtensions Pete from Hairx:
Thanks for showing us we had a vulnerability in our files, most appreciated!
@kayopepe1     18 December, 2020
    Twitter kayopepe1 Sascha :
Thanks for reporting the issue!
@PressBahn     17 December, 2020
    Twitter PressBahn Armin from Preßnitztalbahn:
Thank you for the report, which we were not aware of and which we were able to fix in a few moments. A big help!
@teezeh     17 December, 2020
    Twitter teezeh Thomas :
Praveen reported a minor security issue which I could then easily fix by deleting an obsolete file. Thanks for the professional disclosure.
@reikemgmbh     16 December, 2020
    Twitter reikemgmbh Stefan from Reikem IT Systemhaus:
Praveen reported a minor security issue and we could fix it immediately. Thanks a lot for letting us know!
@uvx_bln     16 December, 2020
    Twitter uvx_bln Administrator from Anonymous:
Many thanks for reporting the issue. Once the issue was known, it could be solved within seconds.
@Lord_iMac     16 December, 2020
    Twitter Lord_iMac Elmar from City Schutz GmbH:
Thanks for your report. It was a simple fix but security improvement. Good job!
@knoell123     14 December, 2020
    Twitter knoell123 Bernhard from anonymous:
Thank you very much for your report. Thanks to your help we were able to solve the problem very quickly
@knoell123     14 December, 2020
    Twitter knoell123 Bernhard from Anonymous:
Thank you very much for your report. Thanks to your help we were able to solve the problem very quickly.
@odieng     12 December, 2020
    Twitter odieng odieng from Bnest:
Thanks for pointing out the vulnerability. I appreciate it!
@Fabulous_Vegan     11 December, 2020
    Twitter Fabulous_Vegan fabulous.ch :
Thank you very much for your bug report. It was fixed within a few seconds. Thank you for bringing it to our attention :)
@krupicka_pavel     9 December, 2020
    Twitter krupicka_pavel Pavel Krupicka from Winternet:
Good job, thanks you very much for your report. The patch took a moment only, but it was necessary.
@DWTech3     9 December, 2020
    Twitter DWTech3 Alex Y. from Hypepoint Co.:
Thanks for the report on the issues. Although the issues were simple fixes but the researcher was able to catch them and report the issues with details in a professional manner. Highly recommended!
@fuzzy_dnlp     8 December, 2020
    Twitter fuzzy_dnlp Webmaster from Anonymous:
Honorable work. Thanks for reporting the error. We received a very polite & quick response with details and were able to fix the error within minutes.
@cathouseotkings     6 December, 2020
    Twitter cathouseotkings Webmaster from The Cat House on the Kings:
Thanks for the report. Tech Support had created the vulnerablity while investigating a problem for us which we probably wouldn't have noticed for a while.
@shunn     6 December, 2020
    Twitter shunn Bill from Sinister Regard Publishers:
Thank you so much for your report. It was a simple matter to fix, but we never would have noticed the vulnerability without your input and advice.
@Sebasti53438355     2 December, 2020
    Twitter Sebasti53438355 Seb from hrworks:
Nice contact, thanks for the report!
@rockpapercynic     2 December, 2020
    Twitter rockpapercynic Peter Chiykowski from Rock Paper Cynic:
Thanks for the report and recommendation! Fixed!
@cyber_pramod     1 December, 2020
    Twitter cyber_pramod lozan from Freelance:
Very polite and Knowledgeable reasearch. He provided me much detailsthat i was able to reproduce vulnerability and patch it with the help of mitigation steps. I recommend this specialist
@nikitsinelnikov     25 November, 2020
    Twitter nikitsinelnikov Nikita from ultimatemember.com:
Thanks for your report! We have fixed the issue.

Please login via Twitter to add a recommendation

Honor Badges


Number of Secured Websites

10+ Secured Websites Badge
50+ Secured Websites Badge
500+ Secured Websites Badge
Web Security Veteran Badge
10+ Websites
50+ Websites
500+ Websites
WEB SECURITY VETERAN
1000+ Websites

Advanced Security Research

WAF Bypasser Badge
CSRF Master Badge
AppSec Logic Master Badge
Fastest Fix Badge
WAF Bypasser
CSRF Master
30+ Reports
AppSec Logic Master
30+ Reports
Fastest Fix
Fix in 24 hours

Outstanding Achievements

Secured OBB Badge
OBB Advocate Badge
Improved OBB Badge
Secured OBB
OBB Advocate
Improved OBB

Commitment to Remediate and Patch

Patch Master Badge
Patch Guru Badge
Patch Lord Badge
Patch Master
55% Patched
Patch Guru
65% Patched
Patch Lord
75% Patched

Recommendations and Recognition

REPUTABLE Badge
FAMOUS Badge
GLOBALLY TRUSTED Badge
REPUTABLE
10+ Recommends
FAMOUS
25+ Recommends
GLOBALLY TRUSTED
50+ Recommends

Distinguished Blog Author

Distinguished Blog Author Badge
Distinguished Blog Author Badge
Distinguished Blog Author Badge
1 Post
3 Posts
5+ Posts

Research Statistics



Total reports:25239
Total reports on VIP sites:251
Total patched vulnerabilities:274
Total vulnerabilities on Hold (Open Bug Bounty):25081
Recommendations received:48
Active since:03.11.2020
Top VIP Security Researcher Awards: Top VIP Security Researcher of the Week Top VIP Security Researcher of the Week

Open Bug Bounty Certificate


Researcher Certificate



No posts in blog yet


Reported Vulnerabilities

All Submissions VIP Submissions

  Latest Patched

 22.01.2021 garmin.com
 22.01.2021 ecu.edu.au
 21.01.2021 liveauction.am
 21.01.2021 esto.nasa.gov
 21.01.2021 french-bookys.org
 21.01.2021 dmm.com
 21.01.2021 polimi.it
 20.01.2021 4gamer.net
 20.01.2021 splunk.com
 20.01.2021 tirebouchon.me

  Latest Blog Posts

25.12.2020 by _Y000_
How to bypass mod_security (WAF)
10.12.2020 by _Y000_
sql injection to bypass Mod_Security
10.12.2020 by _Y000_
Create encoded sql payloads
26.10.2020 by _r00t1ng_
Bypass Addslashes using Multibyte Character
26.10.2020 by _r00t1ng_
One Payload to Inject them all - MultiQuery Injection

  Recent Recommendations

@hoshitabeman     21 January, 2021
    Twitter hoshitabeman:
It was very helpful for me to point out that I forgot to delete php.info!
@Azatotht     21 January, 2021
    Twitter Azatotht:
Thanks for pointing out a public phpinfo() on our website. A++
@vegasworld     21 January, 2021
    Twitter vegasworld:
Great Job from PRAMOD YADAV. Thanks to his advice we could fix a bug on our Website.
Thanks again!
Best wishes from Germany
@domenico     21 January, 2021
    Twitter domenico:
Thank you Pramod for pointing to the leftover .php file that shouldn't be there.
@seinemaritime     21 January, 2021
    Twitter seinemaritime:
Thank you Pramod for your report. Thank you also for the details in mail ! I recommend him !