Category: Mix

Why I am obsessed with this tiny 16GB M.2 SATA disk
31
Mar
2023

Why I am obsessed with this tiny 16GB M.2 SATA disk

Why I am obsessed with this tiny 16GB M.2 SATA disk Source link

The feature works as intended, but what’s in the source? | by Sean (zseano)
31
Mar
2023

The feature works as intended, but what’s in the source? | by Sean (zseano)

This is another bug that was right in front of everyone because if you didn’t purposely look for it you’d…

Persistent XSS (unvalidated Open Graph embed) at LinkedIn.com | by Jonathan Bouman
31
Mar
2023

Persistent XSS (unvalidated Open Graph embed) at LinkedIn.com | by Jonathan Bouman

Proof of concept Are you aware of any (private) bug bounty programs? I would love to get an invite. Please…

Better Exfiltration via HTML Injection | by d0nut
31
Mar
2023

Better Exfiltration via HTML Injection | by d0nut

I used Google Drawings and there’s no shame in that This is a story about how I (re)discovered an exploitation…

Q: HOW do you get started in bug bounty?? How do you build your automation?!
31
Mar
2023

Q: HOW do you get started in bug bounty?? How do you build your automation?!

Q: HOW do you get started in bug bounty?? How do you build your automation?! Source link

PHP Code Review
31
Mar
2023

Down the Rabbit Hole: Unusual Applications of OpenAI in Cybersecurity Tooling

Note: This is the blogpost version of a talk I gave to the National University of Singapore Greyhats club. If…

Abusing URL Shortners to discover sensitive resources or assets
31
Mar
2023

Abusing URL Shortners to discover sensitive resources or assets

September 22, 2015 · websec bruteforce As of late, a fair few companies and startups have been using dedicated URL…

Discovering a stored XSS that affects over 900k websites (CVE-2016-9751)
31
Mar
2023

Discovering a stored XSS that affects over 900k websites (CVE-2016-9751)

In my free time when I’m not hunting for bugs in paid programs, I like to contribute a bit to…

Exploiting Null Byte Buffer Overflow for a ,000 bounty
31
Mar
2023

Exploiting Null Byte Buffer Overflow for a ,000 bounty

As a preface, when I originally found this bug I was unfamiliar the class of “null byte buffer overflow” even…

ropnop blog
30
Mar
2023

Thotcon 2018 – Fun With LDAP, Kerberos (and MSRPC) in AD Environments

Slides Supplemental The original (large) PowerPoint wih all embedded GIFs/Videos: https://1drv.ms/p/s!Aq5mEA03Lijrg9h-hsezBkUC5qwXag Source link

One More Thing to Check for SSO – Flickr ATO – Ron Chan
30
Mar
2023

One More Thing to Check for SSO – Flickr ATO – Ron Chan

I have something that is worth sharing when you are testing for SSO system. Hope you can learn something new…

No BS Guide - ADVANCED BURP (FREE) TRICKS FOR BUG BOUNTY
30
Mar
2023

No BS Guide – ADVANCED BURP (FREE) TRICKS FOR BUG BOUNTY

No BS Guide – ADVANCED BURP (FREE) TRICKS FOR BUG BOUNTY Source link