
How They Got Hacked Episode Fifty One 51

Source link
Related Articles
All Mix →Quickly access insights about apex domains on the attack surface
Table of Contents TL/DR: Customers now have the ability to drill down into specific apex domains by simply clicking one of them from the Root…
Cracking my windshield and earning $10,000 on the Tesla Bug Bounty Program
Table of Contents April, 2019 June, 2019 Reporting Timeline One of the more interesting things I’ve had the opportunity to hack on is the Tesla…
Client-Side Desync Attack (CSD)
Table of Contents 🔍 Introduction 🗡 Offensive techniques Detect Exploitation 🛡 Defensive techniques 📌 References 🔍 Introduction Client-Side Desync(CSD) Attack은 HTTP Request Smuggling(HRS, Desync Attack)의…
h1-2006 CTF | HackerOne
Hello hackers! Thanks to all of you who participated in our #h1-2006 CTF! We had a lot of fun building it, and it looks like many…
[tl;dr sec] #258 – AI-powered Fuzzing and SAST, What Hackers know about your AWS Account, EDR Vulnerabilities
Table of Contents Google's AI-powered fuzzing and augmenting SAST with AI, new OSINT/recon service for public AWS identifiers, finding EDR vulns with fuzzing Defying Gravity…
RCE in Slanger, a Ruby implementation of Pusher – honoki
While researching a web application last February, I learned about Slanger, an open source server implementation of Pusher. In this post I describe the discovery…