H1–212 Capture the Flag Write up. Introduction to the challenge and… | by Alyssa Herrera
Capture the flag events are particular fun events done to challenge people and get people to really think about the...
Read more →Capture the flag events are particular fun events done to challenge people and get people to really think about the...
Read more →Easy Bugs for Hard Cash Continue reading on Medium » Source link
Read more →Q: How to write a BUG BOUNTY report that actually gets paid? Source link
Read more →While browsing a SharePoint instance recently, I came across an interesting URL in the form https:///_layouts/FormServer.aspx?XsnLocation=https:///resource/Forms/template.xsn. The page itself displayed...
Read more →A new malware botnet was discovered targeting Realtek SDK, Huawei routers, and Hadoop YARN servers to recruit devices into DDoS...
Read more →This year I released a challenge for the Full Stack Web Attack class: Whilst several people had solved the challenge,...
Read more →When Assetnote Continuous Security (CS) monitors your attack surface, one of the things it looks for are instances of WebPageTest....
Read more →This writeup walks you through the full process as to how I found a pretty bad Insecure Direct Object Reference...
Read more →After a long day of trying and failing to find vulnerabilities on the Verizon Media bug bounty program I decided...
Read more →Slides Supplemental Serverless Toolkit available here: https://github.com/ropnop/serverless_toolkit Source link
Read more →From time to time we see postMessage bug in H1 hacktivity, some write ups mentioning the word postMessage, but do...
Read more →Unfortunately, my thought process wasn’t that complex when I suddenly had to talk to a federal agent on my phone...
Read more →