
Broken Access Control – Lab #9 UID controlled by param with data leakage in redirect | Long Version

Source link
Related Articles
All Mix →Believers Worry Less Than Non-Believers
This is an interesting piece over at the Audacious Epigone. It shows that the deeply religious worry the least, which makes perfect sense to me.…
H1-702 Las Vegas Day 2: Hacking with Zoom
Welcome back to our first day of in-person hacking! We had some lovely people greeting you today for your check-in. Again, we want all of…
A Partial Victory for AI Researchers
Table of Contents What is the DMCA and Why Does it Matter? What Was the Ruling? The Implications for AI Research HackerOne has partnered with…
The Area Under the Curve: How AI Expands Human Work Capacity
Table of Contents The Human Reality Enter AI The two axis of augmentation Real-World Impact Understanding the framework A useful model Summary The overwhelming volume…
Semacodes | Daniel Miessler
I just read about semacodes over at KuiperCliff. Semacodes are a really interesting technology that lets you convert a URL into an image that can…
Extracting Hashes and Domain Info From ntds.dit
Table of Contents Dumping Tables Extracting Domain Info with ntdsxtract Dumping User Info and Password Hashes Bonus: Extracting Domain Computer Info On internal pens, it’s…