Skip to content
March 31, 2026
☍ CyberNoz
  • Home
Home›Mix›CSRF protection on OIDC login is broken
Mix

CSRF protection on OIDC login is broken

Cybernoz
April 8, 2023 1 min read
Share X / Twitter LinkedIn Reddit WhatsApp Email



Nextcloud disclosed a bug submitted by mikaelgundersen: https://hackerone.com/reports/1878381



Source link

Share X / Twitter LinkedIn Reddit WhatsApp Email
« Previous
Top 3 Most Dangerous Lines of Code
Next »
Unveiling the Wild World of Bug Bounties

Related Articles

All Mix →
UL NO. 442: Crowdstrike Analysis, Cannabis=Soma?, NK Github SE, AI Weaponry Mix

UL NO. 442: Crowdstrike Analysis, Cannabis=Soma?, NK Github SE, AI Weaponry

Table of Contents TOC NOTES MY WORK SECURITY AI / TECH HUMANS IDEAS DISCOVERY RECOMMENDATION OF THE WEEK APHORISM OF THE WEEK SECURITY | AI…

March 28, 2025 Cybernoz 11 min read
Security Defender Insights bad actors are using intelligence and automatic Mix

Security Defender Insights: “bad actors are using intelligence and automatic tools, we need to surpass those abilities”

Table of Contents How has COVID-19 impacted your org’s security awareness or practices in the last year? Have you seen any increased attempts of any…

April 25, 2023 Cybernoz 2 min read
Try Hack Me Advent of Cyber 2021 Day 3 scaled Mix

Try Hack Me: Advent of Cyber 2021 – Day 3

Try Hack Me: Advent of Cyber 2021 – Day 3 Source link

April 8, 2023 Cybernoz 1 min read
10 Ways to Hack Your New Normal Workweek Mix

Healthy programs make for happy hackers. Introducing response SLAs

Table of Contents Response SLA: What hackers expect Response efficiency indicators: Set expectations with hackers Inbox Labels: Act on priority reports Program Health Dashboard: Track…

May 23, 2023 Cybernoz 3 min read
New security tests November 15 2017 Image Resizer Exposure in Mix

Newly added security tests, August 28, 2017: vBulletin and WordPress vulnerabilities

To help you keep up with the latest vulnerabilities, we add new security tests to Detectify on a regular basis. The latest additions to the…

May 10, 2023 Cybernoz 1 min read
Slack Increases Bounty Minimums For the Next 90 Days Mix

Slack Increases Bounty Minimums For the Next 90 Days

This blog post was contributed by Slack Staff Technical Program Manager Branden Jordan. Given the success of Slack’s previous promotion and their continued focus on…

May 8, 2023 Cybernoz 1 min read

Latest Posts

  • Make Your Microsoft Security Tools Come to Life With Huntress
  • Protecting the Global Supply Chain
  • Hacker charged with stealing $53 million from Uranium crypto exchange
  • CareCloud Data Breach – Hackers Accessed IT Infrastructure and Stole Patient Data
  • EvilTokens Launches New Phishing Service Targeting Microsoft Accounts
  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
☍ CyberNoz

Cybersecurity News

  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
Archive
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
© 2026 Cybernoz. All rights reserved.