Category: Mix

How pentesting mirrors the evolution of quality assurance
23
Jan
2024

How pentesting mirrors the evolution of quality assurance

Quality assurance in software development is a process of ensuring that software, once it’s deployed to production, will be free…

Tracking AI Agent Activity, 400 SF Cameras, AI Sleeper Agents…
23
Jan
2024

Tracking AI Agent Activity, 400 SF Cameras, AI Sleeper Agents…

Unsupervised Learning is a Security, AI, and Meaning-focused newsletter and podcast that looks at how best to thrive as humans….

Hackerone logo
22
Jan
2024

Find Mistakes Earlier & Save Money

As a result, it’s only natural that code gets shipped with security flaws. Thankfully, many organizations have solutions in place…

Exploring Bühler's strategic collaboration with Intigriti 
22
Jan
2024

Exploring Bühler’s strategic collaboration with Intigriti 

Before collaborating with Intigriti, Bühler faced a common yet complex challenge: enhancing the effectiveness of their Vulnerability Disclosure Program (VDP)….

Webinar: Join us for the latest in API Threats on January 24, 2024
21
Jan
2024

Webinar: Join us for the latest in API Threats on January 24, 2024

In today’s complex digital landscape, the security of APIs has become paramount. As we move into 2024, it’s essential to…

[tl;dr sec] #214 - Poisoning GitHub’s Runner Images, Fuzzing AWS WAF, LLM-powered Honeypot
18
Jan
2024

[tl;dr sec] #214 – Poisoning GitHub’s Runner Images, Fuzzing AWS WAF, LLM-powered Honeypot

I hope you’ve been doing well! 🤢 A Devastating Slip Recently I was rushing down the BART escalator after my…

Hackerone logo
18
Jan
2024

The Impacts of Cross-site Scripting (XSS) [With Real Examples]

According to HackerOne’s 7th Annual Hacker Powered Security Report, XSS is the number one most common vulnerability for bug bounty…

The major bug bounty debate: Which department should pay for rewards?
18
Jan
2024

The major bug bounty debate: Which department should pay for rewards?

When launching a new bug bounty program, there’s usually a discussion around which department should ‘foot the bill’ for the…

Reversing and Tooling a Signed Request Hash in Obfuscated JavaScript
16
Jan
2024

Reversing and Tooling a Signed Request Hash in Obfuscated JavaScript

I was hacking on a bug bounty program recently and discovered that the website is signing every request, preventing you…

Crystal-Lang is ❤️
14
Jan
2024

Crystal-Lang is ❤️

저는 최근에 Crystal-lang을 즐기고 있습니다. 간단한 토이 프로젝트부터 Noir란 사이즈가 점점 커지고 있는 프로젝트까지 Crystal을 통해 구현하고 있습니다. 오늘은 제가…

Hackerone logo
11
Jan
2024

Expert Code Review Meets Powerful Automation

Shipping clean, secure code should be easier. HackerOne originally acquired PullRequest in 2022 to power developer-first security solutions that enable…

[tl;dr sec] #213 - AWS Secure Defaults, Damn Vulnerable LLM Agent, cdk-goat
11
Jan
2024

[tl;dr sec] #213 – AWS Secure Defaults, Damn Vulnerable LLM Agent, cdk-goat

I hope you’ve been doing well! ✈️ In Plane Sight I’ve gotta get something off my chest. Normally on planes…