Skip to content
June 7, 2026
☍ CyberNoz
  • Home
Home›Mix›$50k bug bounty on Shopify explained (GitHub access token leaked via electron application)
Mix

$50k bug bounty on Shopify explained (GitHub access token leaked via electron application)

Cybernoz
March 26, 2023 1 min read
Share X / Twitter LinkedIn Reddit WhatsApp Email



$50k bug bounty on Shopify explained (GitHub access token leaked via electron application)



Source link

Share X / Twitter LinkedIn Reddit WhatsApp Email
« Previous
Homebrew로 패키지 제공하기 🍺
Next »
ChatGPT leaks bits of users’ chat history

Related Articles

All Mix →
techniques, terminology, and real-world impact on business Mix

techniques, terminology, and real-world impact on business

Table of Contents What you will learn in this blog What is a privilege escalation? What is lateral movement? What is pivoting? What you will…

February 16, 2026 Cybernoz 7 min read

Why You Shouldn’t Be Calling Yourself Agnostic

Table of Contents Agnosticism Atheism Conclusion September 4, 2009 — After much spirited debate I have come to the conclusion that the argument presented below…

July 21, 2025 Cybernoz 5 min read
Unsupervised Learning NO 365 Chinas Decline MicrosoftAI Creativity Ratio… Mix

Unsupervised Learning NO. 365 | China’s Decline, MicrosoftAI, Creativity Ratio…

Exploring the intersection of security, technology, and society—and what might be coming next… Standard Web Edition | Ep. 365 | January 16, 2023 🎙️If you’re…

April 20, 2023 Cybernoz 7 min read
Abusing http path normalization and cache poisoning to steal rocket Mix

Abusing HTTP Path Normalization and Cache Poisoning to steal Rocket League accounts | Sam Curry

Table of Contents Hunting for bugs on Rocket League Identifying HTTP Cache Poisoning Exploiting HTTP Cache Poisoning Putting the Pieces Together Addendum Over the last…

March 27, 2023 Cybernoz 8 min read

AI Might Make Everything Amazing

The incredible benefits that could arrive within 5-10 years August 14, 2025 What I wanna talk about is: if we get AGI or ASI, we…

August 14, 2025 Cybernoz 1 min read
Get as image function pulls any InsightsNRQL data from any Mix

Get as image function pulls any Insights/NRQL data from any New Relic account (IDOR)

This writeup walks you through the full process as to how I found a pretty bad Insecure Direct Object Reference (IDOR) in New Relic.  In…

March 19, 2023 Cybernoz 4 min read

Latest Posts

  • I Have a Lot to be Thankful for in 2020
  • New IronWorm malware hits 36 packages in npm supply-chain attack
  • Instagram Fixes Password Reset Flaw That Exposes User Emails and Phone Numbers
  • UNC3753 Targets US Law Firms with Vishing, RMM Tools, and Physical Break-Ins
  • Most pros have seen AI hallucinations in IT operations
  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
☍ CyberNoz

Cybersecurity News

  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
Archive
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
© 2026 Cybernoz. All rights reserved.