Skip to content
May 31, 2026
☍ CyberNoz
  • Home
Home›Mix›[www.32red.com] Reverse proxy misconfiguration leads to 1-click account takeover
Mix

[www.32red.com] Reverse proxy misconfiguration leads to 1-click account takeover

Cybernoz
April 3, 2023 1 min read
Share X / Twitter LinkedIn Reddit WhatsApp Email



Kindred Group disclosed a bug submitted by sw33tlie: https://hackerone.com/reports/1632973 – Bounty: $5250



Source link

Share X / Twitter LinkedIn Reddit WhatsApp Email
« Previous
WinRAR SFX archives can run PoweShell without being detected
Next »
Western Digital shuts systems due to Cyber Attack

Related Articles

All Mix →
Introducing Detectify API v 2 Mix

Introducing Detectify API v 2

Table of Contents What’s new? Where can I find the documentation for this awesome new API? What about the old API? How do I get…

May 8, 2023 Cybernoz 2 min read
The Best Argument I’ve Ever Heard For Why Someone Believes in God Mix

The Best Argument I’ve Ever Heard For Why Someone Believes in God

A new friend and I had an extraordinarily productive and meaningful discussion about religion last night. This is noteworthy because he is a devout Mormon…

April 1, 2025 Cybernoz 3 min read
Three Powerful Safari Features That Few People Use Mix

Three Powerful Safari Features That Few People Use

Table of Contents Browsing and Search Snapback URL Path Navigation Web Inspector [Edit: An updated version of this post, with 6 additional features, can be…

April 9, 2025 Cybernoz 2 min read

Building a Personal API | Daniel Miessler

Table of Contents Combining with Digital Assistants How I think it'll work in practice Architecture How to Use It Get Available Tools Call a Tool…

August 27, 2025 Cybernoz 5 min read
New security tests November 15 2017 Image Resizer Exposure in Mix

Newly added security tests, August 28, 2017: vBulletin and WordPress vulnerabilities

To help you keep up with the latest vulnerabilities, we add new security tests to Detectify on a regular basis. The latest additions to the…

May 10, 2023 Cybernoz 1 min read
Tapping Hackers for Continuous Security Mix

Vulnerability Reporting – Lack of Corporate Security Reporting

Recently, McDonald’s customers were placed at risk unnecessarily due to the lack of a clear vulnerability disclosure process. What if they had had a “security@”…

May 28, 2023 Cybernoz 3 min read

Latest Posts

  • Ministers refused to sign off £563m Capita contract amid civil service pension disaster
  • Malware Deep Dive | Huntress
  • Charter Communications data breach affects 4.9 million accounts
  • Microsoft Releases KB5089573 for Windows 11 to Fix Patch Tuesday Install Issues
  • GitLab Patches Multiple Duo AI, DoS, and Authorization Vulnerabilities
  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
☍ CyberNoz

Cybersecurity News

  • Agbi
  • ArsTechnica
  • AttackDefense
  • Australiancybersecuritymagazine
  • Bankinfosecurity
  • Bleeping Computer
  • CISOOnline
  • CloudSecurity
  • ComputerWeekly
  • Crowdstrike
  • Cyber Security Ventures
  • CyberDefenseMagazine
  • CyberNews
  • Cyberscoop
  • CyberSecurity-Insiders
  • CyberSecurityDive
  • CyberSecurityNews
  • CyberWire
  • DarkReading
  • ExploitOne
  • GBHackers
  • Genel
  • HackerCombat
  • HackRead
  • HelpnetSecurity
  • IndustrialCyber
  • InfoSecurity
  • ITnews
  • ITSecurityGuru
  • Krebson
  • MalwareBytes
  • Mix
  • OTSecurity
  • PortSwigger
  • Rapid7
  • SCMP
  • securelist
  • Securityaffairs
  • SecurityWeek
  • techcrunch
  • TheCyberExpress
  • TheHackerNews
  • ThreatIntelligence-IncidentResponse
  • Tldrsec
  • Unit42
  • VendorResearch
  • welivesecurity
  • Wired
  • Zerosalarium
Archive
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
© 2026 Cybernoz. All rights reserved.