Category: Mix

Security Update: Spring4Shell Vulnerability Modules Already Scanning on Detectify
18
Apr
2023

Security Update: Spring4Shell Vulnerability Modules Already Scanning on Detectify

Numerous vulnerabilities have been found this week in Spring, a popular Java Web app development framework from VMware. Detectify Surface…

Bash and shell expansions: lazy list-making
18
Apr
2023

Bash and shell expansions: lazy list-making

A tour of brace expansion, shell parameter expansions, and playing with substrings in Bash. It’s that time of year again!…

Meeting the Mediation Team at H1-702
18
Apr
2023

Meeting the Mediation Team at H1-702

Hello world, we are the Mediation Team. For those who don’t know what we do – we are here to…

Ethical hacker: CISOs have more to worry about than a zero day exploit
18
Apr
2023

Ethical hacker: CISOs have more to worry about than a zero day exploit

TL/DR: The past six months have brought some herculean security issues such as Log4j and the more recent Spring4Shell. It’s…

The care and feeding of an IoT device
18
Apr
2023

The care and feeding of an IoT device

Why IoT devices are, basically, puppies, and whether or not you should give somebody one for Christmas. Giving someone a…

Making Things Right | HackerOne
18
Apr
2023

Making Things Right | HackerOne

Did you know HackerOne has had a Make It Right fund for years? Often, programs and hackers come to agreeable…

Improvements to boost the attack surface view, ports & more
18
Apr
2023

Improvements to boost the attack surface view, ports & more

TL/DR: Users now get additional insights on what is discovered on the attack surface. This includes information such as when…

The surprisingly difficult task of printing newlines in a terminal
18
Apr
2023

The surprisingly difficult task of printing newlines in a terminal

Your guide to string interpolation quirks that confound the best of us. Surprisingly, getting computers to give humans readable output is…

Hacker Success Managers | HackerOne
18
Apr
2023

Hacker Success Managers | HackerOne

Intro to Hacker Success Managers  Earlier this year, we released a blog that shared foundational changes on our Community Team….

Phishing, OWASP, EASM, and hacking WordPress – top themes from Hack Yourself London
18
Apr
2023

Phishing, OWASP, EASM, and hacking WordPress – top themes from Hack Yourself London

TL/DR: The Hack Yourself London event gathered leading ethical hackers, industry thought leaders, and IT security experts to discuss several…

NO. 367 | Hive Ransom, Anti-Google, Software 2.0…
18
Apr
2023

NO. 367 | Hive Ransom, Anti-Google, Software 2.0…

Exploring the intersection of security, technology, and society—and what might be coming next… Standard Web Edition | January 30, 2023…

Secure web forms for the front-end developer
18
Apr
2023

Secure web forms for the front-end developer

How to design secure web forms: validate, sanitize, and control. While cybersecurity is often thought of in terms of databases…