forum.duty-free.cc is a Russian-language forum focused on information security and hacking-related topics, where users discuss penetration testing, vulnerabilities, exploits, OSINT, and real-world cases. The platform presents itself as a community of cybersecurity professionals and enthusiasts who share experience, publish articles, and discuss methods of defense and attack; however, it exists at the intersection of legitimate security research and the underground scene, so topics related to gray or controversial practices may also appear.
Related Articles
All Mix →Top 5 Takeaways from the 2021 Hacker-Powered Security Report: Industry Insights
For the fifth year in a row, HackerOne published a report that provides insights from the world’s largest database of vulnerabilities and bug bounty customer…
Cache Me If You Can: Messing with Web Caching
Table of Contents Cache Deception Edge Side Include Injection (ESII) Web Cache Poisoning In this talk, Louis covers 3 web cache related attacks: cache deception,…
Self-Contained Scripts: From Python’s UV to Bun’s TypeScript Revolution
Table of Contents The Self-Contained Script Revolution From Python UV to Bun: A Natural Evolution Real-World Self-Contained Scripts: Claude Code Hooks Example 1: Command Logger…
Fastjson: exceptional deserialization vulnerabilities – Alphabot Security
Table of Contents Intro Typical Fastjson RCEs (using the autoType-feature) Now it gets interesting… The global Fastjson instance How many autoType checks? But can you…
8 High-Impact Bugs and How HackerOne Customers Avoided a Breach: Privilege Escalation
Customers tell us that a big difference between hacker-powered security and traditional approaches is the impact. Since hackers make money for reporting vulnerabilities with a…
A Warm Welcome To Our New SVP of Customer Success
Table of Contents Why I Joined HackerOne Making HackerOne Core to the CISO Playbook Building a World-Class Team of Leaders First Things First Hello HackerOne…

