Category: Mix

Expanding Capabilities and Attack Surfaces
07
Nov
2024

Expanding Capabilities and Attack Surfaces

AI and APIs have a symbiotic relationship. APIs power AI by providing the necessary data and functionality, while AI enhances…

Hackerone logo
07
Nov
2024

Unlocking Engagement with Employee Feedback

Since 2018, HackerOne has maintained an employee engagement survey participation rate of over 80%, with half of the surveys achieving…

Top 4 new attack vectors in web application targets
06
Nov
2024

Top 4 new attack vectors in web application targets

We all like to find vulnerabilities in bug bounty programs, they get us bounties, increase our ranks on platform leaderboards…

Final Thoughts on the 2024 Election
04
Nov
2024

Final Thoughts on the 2024 Election

I have some interesting thoughts going into the big day tomorrow, and I wanted to try to capture them concisely….

Attackers Abuse DocuSign API to Send Authentic-Looking Invoices At Scale
04
Nov
2024

Attackers Abuse DocuSign API to Send Authentic-Looking Invoices At Scale

In a concerning trend, cybercriminals are leveraging DocuSign’s APIs to send fake invoices that appear strikingly authentic. Unlike traditional phishing…

Exploring OWASP Noir’s PassiveScan | HAHWUL
03
Nov
2024

Exploring OWASP Noir’s PassiveScan | HAHWUL

Detecting Secrets with Noir – The PassiveScan Advantage Hello, security enthusiasts! Today, we’re diving into the exciting new features of…

Fixing Ubiquiti WiFi Roaming
03
Nov
2024

Fixing Ubiquiti WiFi Roaming

The three settings I had to enable to get proper WiFi roaming The problem I’m a massive fan of Ubiquiti…

TIL you can Import CSV files into Google Calendar
03
Nov
2024

TIL you can Import CSV files into Google Calendar

Today I learned that Google Calendar has a really useful CSV import feature that lets you bulk-import events. This is…

Hackerone logo
31
Oct
2024

Who Should Own AI Risk at Your Organization?

In this blog, we’ll explore who is and should be accountable for AI risk within organizations and how to empower…

How to Mitigate the Latest API Vulnerability in FortiManager
30
Oct
2024

How to Mitigate the Latest API Vulnerability in FortiManager

Overview of the FortiManager API Vulnerability Recently, a critical API vulnerability in FortiManager (CVE-2024-47575) was disclosed. Certain threat actors exploited…

Take control of your security posture: The Burp Suite Enterprise Edition winter update | Blog
30
Oct
2024

Take control of your security posture: The Burp Suite Enterprise Edition winter update | Blog

Rob Samuels | 30 October 2024 at 09:12 UTC Manage your security, your way. Managing a complex, enterprise-level web estate…

Hackerone logo
29
Oct
2024

Securing Our Elections Through Vulnerability Testing and Disclosure

Security researchers and election technology manufacturers at the Election Security Research Forum (ESRF). The Event In preparation for the election…