Category: Mix

[Uber] redirect_uri is difficult to do it right – Ron Chan
23
Mar
2023

[Uber] redirect_uri is difficult to do it right – Ron Chan

I don’t have automation in my bug hunting, no sqlmap, sublist3r or jsparser. I tried, they just don’t work out…

Bug Bounties Using only Burp & Browser - 30 DAY RESULTS (UNEXPECTED)
23
Mar
2023

Bug Bounties Using only Burp & Browser – 30 DAY RESULTS (UNEXPECTED)

Bug Bounties Using only Burp & Browser – 30 DAY RESULTS (UNEXPECTED) Source link

Automate it! | Richard’s Infosec blog
23
Mar
2023

Automate it! | Richard’s Infosec blog

“If you are doing a task more than twice? Then, automate it!” I hear that phrase all the time, but…

Leaking data of millions and taking over any account · rez0
23
Mar
2023

Leaking data of millions and taking over any account · rez0

Hacking on a plane, by Midjourney AI This is a short write-up about how I could have accessed the personal…

I hacked Outlook and could've read all of your EMAILS!
23
Mar
2023

I hacked Outlook and could’ve read all of your EMAILS!

I hacked Outlook and could’ve read all of your EMAILS! Source link

Exploiting Acronis Cyber Backup for Fun and Emails – RCE Security
23
Mar
2023

Exploiting Acronis Cyber Backup for Fun and Emails – RCE Security

CVE-2020-16171: Exploiting Acronis Cyber Backup for Fun and Emails You have probably read one or more blog posts about SSRFs,…

Broken Access Control - Lab #8 UID controlled by parameter, with unpredictable UIDs | Short Version
23
Mar
2023

Broken Access Control – Lab #8 UID controlled by parameter, with unpredictable UIDs | Long Version

Broken Access Control – Lab #8 UID controlled by parameter, with unpredictable UIDs | Long Version Source link

Don't make random HTTP requests. - YouTube
23
Mar
2023

Don’t make random HTTP requests. – YouTube

Don’t make random HTTP requests. Source link

Bounty Infrastructure Schema
23
Mar
2023

My bounty infrastructure

My bounty infrastructure with Docker [31/12/2020] : Updated the post for Rengine to v0.5 and a clearer / cleaner configuration…

Burp Suite Enterprise Edition Power Tools: Unleashing the power to the command line, Python, and more | Blog
23
Mar
2023

Burp Suite Enterprise Edition Power Tools: Unleashing the power to the command line, Python, and more | Blog

Ollie Whitehouse | 21 March 2023 at 14:30 UTC tl;dr We have released BSEEPT – Burp Suite Enterprise Edition Power…

Screenshot 2016-05-16 at 21:41:38
22
Mar
2023

[BugBounty] Sleeping stored Google XSS Awakens a $5000 Bounty

Dear Readers, Today I want to share a short write-up about a stored cross-site scripting (XSS) issue I found on…

Bug Bounty Guide: How to Exploit Microsoft/nni with Deserialization Attacks | Open-Source Python
22
Mar
2023

Bug Bounty Guide: How to Exploit Microsoft/nni with Deserialization Attacks | Open-Source Python

Bug Bounty Guide: How to Exploit Microsoft/nni with Deserialization Attacks | Open-Source Python Source link