You might like
new blogpost time!! this one's a fun writeup on a vulnerability chain i found across multiple google services that earned me a $4133.70 bounty lots of fun css as usual! i had to recreate a bunch of drive/docs/gmail/youtube UIs c: have fun! lyra.horse/blog/2024/09/u…
I just published Exploring the World of ESI Injection Feedbacks are appreciated , let me know if you liked it or not :) Special thanks to @nytr0gen_ link.medium.com/0WFFFk7n9vb
Nice talk by @mhmdiaa youtu.be/3Q-QyGlc_Xk Slides: speakerdeck.com/mhmdiaa/automa…
API Sec-list cheatsheets for Bug-Bounty Hunting (PART-1) -> github.com/chrislockard/a… -> github.com/danielmiessler… -> github.com/assetnote/word… -> github.com/danielmiessler… ->github.com/Bo0oM/fuzz.txt #cybersecuritytips #bugbountytips #bugbounty #security #Tweets #github #CheatSheet
Shodan HQ nmap plugin - passively scan targets:- This is an nmap nse script to query the Shodan API and passively get information about hosts. nmap --script shodan-hq.nse -sn -Pn -n <target> github.com/glennzw/shodan…
💥 New article "Fuzzing for XSS via nested parsers condition" by our researcher @Psych0tr1a. This techniques allowed us to find a bunch of vulnerabilities in popular web products that no one had noticed before! swarm.ptsecurity.com/fuzzing-for-xs…
Subdomain enum tool - Contributing to the community. Thanks to all those tool creators, I consolidated normalized and de-duplicated data. github.com/iamthefrogy/fr… #bugbounty #bughunting #appsec #applicationsecurity #cyber #cybersecurity #security #infosec #informationsecurity
Mail.ru disclosed a bug submitted by uddeshaya001: hackerone.com/reports/1287686 #hackerone #bugbounty
Finally, here is the blog for the prototype pollution research we did. "A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild pwn.af/research/pp
Looking for motivation to do some cloud security research? ☁️🔒 Let us remind you of the $313,337 we'll be giving out in total prizes this year to the top 6 bug reports in GCP. More details: security.googleblog.com/2021/03/announ…
CVE-2021-33193 Request splitting via HTTP/2 method injection and mod_proxy (Reported by @albinowax ) demo: github.com/CHYbeta/OddPro… article: 1、portswigger.net/research/http2 2、articles.zsxq.com/id_zztmlo4l3hb…
Mattermost disclosed a bug submitted by @AkashHamal0x01: hackerone.com/reports/1114347 - Bounty: $150 #hackerone #bugbounty
Courier disclosed a bug submitted by @basantkarki007: hackerone.com/reports/1320976 #hackerone #bugbounty
Write-up on how a Facebook bug could have exposed your email/phone number to your friends. Quick and easy.😉 Bounty: $18250 #BugBounty iamsaugat.medium.com/a-facebook-bug…
Topcoder disclosed a bug submitted by @{}: hackerone.com/reports/978823 #hackerone #bugbounty
United States Trends
- 1. Epstein 898K posts
- 2. Steam Machine 47.7K posts
- 3. Virginia Giuffre 52.4K posts
- 4. Bradley Beal 4,630 posts
- 5. Valve 32.7K posts
- 6. Boebert 38.6K posts
- 7. Jake Paul 3,644 posts
- 8. Xbox 64.1K posts
- 9. Rep. Adelita Grijalva 19.3K posts
- 10. Clinton 106K posts
- 11. Dana Williamson 5,925 posts
- 12. Anthony Joshua 2,721 posts
- 13. GabeCube 3,341 posts
- 14. Maxwell 130K posts
- 15. Scott Boras 1,116 posts
- 16. #dispatch 55.7K posts
- 17. Dirty Donald 18.5K posts
- 18. H-1B 106K posts
- 19. Michigan State 9,861 posts
- 20. Rosalina 76.3K posts
You might like
Something went wrong.
Something went wrong.