[tl;dr sec] #167 – SBOM, Scaling Security Alert Management, Mitigating RBAC-Based PrivEsc in Kubernetes
Hey there, I hope you’ve been doing well! Come say “How ya?” at OWASP Dublin If you’re going to be...
Read more →Hey there, I hope you’ve been doing well! Come say “How ya?” at OWASP Dublin If you’re going to be...
Read more →Unveiling the Wild World of Bug Bounties Source link
Read more →Nextcloud disclosed a bug submitted by mikaelgundersen: https://hackerone.com/reports/1878381 Source link
Read more →Firefox privacy and security hardening guide (2022 revised edition) Source link
Read more →This post is going to outline how I simply applied my methodology and managed to find multiple vulnerabilities leaking airline...
Read more →Proof of concept Are you aware of any (private) bug bounty programs? I would love to get an invite. Please...
Read more →BOUNTY THURSDAYS – LIVE #1 (SVG-XML/Redirects/OOB servers and Community Questions) Source link
Read more →Late last year, I was invited to Facebook’s Bountycon event, which is an invitation-only application security conference with a live-hacking...
Read more →A few weekends ago, I decided (because apparently I’m a masochist) that I was tired of the free version of...
Read more →This post is another evidence to show how difficult to parse a URL correctly. IE has URL parsing problem, this...
Read more →No BS Guide – Better Subdomain Enumeration Source link
Read more →