Category: Mix

Multiple Vulnerabilities in Progress Ipswitch WhatsUp Gold – Assetnote
04
Apr
2023

Multiple Vulnerabilities in Progress Ipswitch WhatsUp Gold – Assetnote

Summary The following vulnerabilities were discovered in Progress Ipswitch WhatsUp Gold: The adivsory from Progress can be found here. Impact…

iOS Pentesting Tools Part 2: Cycript – allysonomalley.com
04
Apr
2023

iOS Pentesting Tools Part 2: Cycript – allysonomalley.com

This post is part 2 of a series giving an overview of the most useful iOS app pentesting tools. ‘Cycript’…

Octopus Strike! Three Argo CD API Exploits In Two Weeks
04
Apr
2023

Octopus Strike! Three Argo CD API Exploits In Two Weeks

Argo CD is a popular Continuous Deployment tool that enables DevOps teams to manage their applications across multiple environments. However,…

Building a secure application: the first step | Security Simplified
04
Apr
2023

Building a secure application: the first step | Security Simplified

Building a secure application: the first step | Security Simplified Source link

TomNomNom Demos a Ben Eater 8-bit CPU Emulator
04
Apr
2023

TomNomNom Demos a Ben Eater 8-bit CPU Emulator

TomNomNom Demos a Ben Eater 8-bit CPU Emulator Source link

[tl;dr sec] #168 - GCP and Azure Storage Threat Models, macOS Security, Red Team Resources
03
Apr
2023

[tl;dr sec] #168 – GCP and Azure Storage Threat Models, macOS Security, Red Team Resources

Hey there, I hope you’ve been doing well! Semgrep in EU I was a bit sleepy when I was finishing…

A Pentesters Introduction To The New OWASP API Top 10 - 2023 RC
03
Apr
2023

A Pentesters Introduction To The New OWASP API Top 10 – 2023 RC

A Pentesters Introduction To The New OWASP API Top 10 – 2023 RC Source link

[www.32red.com] Reverse proxy misconfiguration leads to 1-click account takeover
03
Apr
2023

[www.32red.com] Reverse proxy misconfiguration leads to 1-click account takeover

Kindred Group disclosed a bug submitted by sw33tlie: https://hackerone.com/reports/1632973 – Bounty: $5250 Source link

Attacking JWT - Header Injections
03
Apr
2023

Attacking JWT – Header Injections

Attacking JWT – Header Injections Source link

Answering your questions about Superbacked
03
Apr
2023

Answering your questions about Superbacked

Answering your questions about Superbacked Source link

New features means new bugs. Sometimes new features designed to… | by Sean (zseano)
03
Apr
2023

New features means new bugs. Sometimes new features designed to… | by Sean (zseano)

Sometimes new features designed to generate revenue for a company can be rushed and sometimes not enough thought has gone…

Persistent XSS (Unvalidated oEmbed) at Medium.com | by Jonathan Bouman
03
Apr
2023

Persistent XSS (Unvalidated oEmbed) at Medium.com | by Jonathan Bouman

Proof of concept Are you aware of any (private) bug bounty programs? I would love to get an invite. Please…