Category: Mix

ToolTime - WayMore (Historical Content Discovery)
10
Mar
2023

ToolTime – WayMore (Historical Content Discovery)

ToolTime – WayMore (Historical Content Discovery) Source link

10
Mar
2023

Turning Self-XSS into Good-XSS – Jack

Now that the Uber bug bounty programme has launched publicly, I can publish some of my favourite submissions, which I’ve…

FT 1000: Intigriti named in the Financial Times’ top 500 fastest-growing European companies 
10
Mar
2023

FT 1000: Intigriti named in the Financial Times’ top 500 fastest-growing European companies 

 Intigriti was one of five Belgian companies to feature in the FT 1000 List of Europe’s Fastest Growing Companies.  Intigriti,…

limited freemarker ssti to arbitrary liql query and manage lithium cms
10
Mar
2023

limited freemarker ssti to arbitrary liql query and manage lithium cms

we faced (w/ @celalerdik) an interesting ssti vulnerability on a bugcrowd’s program. we could show the traditional ’49’ number when…

Advent of Cyber 2022: Day 17 Filtering for Order Amidst Chaos (Walkthrough)
10
Mar
2023

Advent of Cyber 2022: Day 17 Filtering for Order Amidst Chaos (Walkthrough)

Advent of Cyber 2022: Day 17 Filtering for Order Amidst Chaos (Walkthrough) Source link

feedback
10
Mar
2023

OAuth and PostMessage

Tl;DR; An OAuth misconfiguration was discovered in the redirect_uri parameter at the target’s OAuth IDP at https://app.target.com/oauth/authorize, which allowed attackers…

How They Got Hacked Episode Fifty Nine 59
10
Mar
2023

How They Got Hacked Episode Fifty Nine 59

How They Got Hacked Episode Fifty Nine 59 Source link

WILSON Cloud Respwnder – honoki
10
Mar
2023

WILSON Cloud Respwnder – honoki

If you’re a Burp Suite user, you’ll be familiar with Burp Collaborator: a service that allows you to monitor out-of-band…

Here's why you need HackerContent
10
Mar
2023

Here’s why you need HackerContent

Here’s why you need HackerContent Source link

SNI Injection
10
Mar
2023

SNI Injection

🔍 Introduction SNI SNI(Server Name Indication)은 TLS의 확장 기능으로 handshake 과정 초기에 클라이언트가 어떤 호스트에 접속하는지 서버에게 알리는 역할을 수행합니다….

Playing With Idors With @IAmRenganathan | Hacker2Hacker | Hacking IRCTC #bugbounty
10
Mar
2023

Playing With Idors With @IAmRenganathan | Hacker2Hacker | Hacking IRCTC #bugbounty

Playing With Idors With @IAmRenganathan | Hacker2Hacker | Hacking IRCTC #bugbounty Source link

Extreme Transparency or Corporate Security Responsibility?
09
Mar
2023

Extreme Transparency or Corporate Security Responsibility?

Extreme Transparency or Corporate Security Responsibility? Source link