thebugbountyhunter | Unsorted

Telegram-канал thebugbountyhunter - The Bug Bounty Hunter

43247

Happy hunting! thebugbountyhunter.com hello@thebugbountyhunter.com

Subscribe to a channel

The Bug Bounty Hunter

Eliminating Memory Safety Vulnerabilities at the Source

http://security.googleblog.com/2024/09/eliminating-memory-safety-vulnerabilities-Android.html

Читать полностью…

The Bug Bounty Hunter

Bypassing Filters: SSRF Exploitation via DNS Rebinding with Just 1 in 30 Successful Requests

mokhansec/bypassing-filters-ssrf-exploitation-via-dns-rebinding-with-just-1-in-30-successful-requests-2fdc3a9cfd7d" rel="nofollow">https://medium.com/@mokhansec/bypassing-filters-ssrf-exploitation-via-dns-rebinding-with-just-1-in-30-successful-requests-2fdc3a9cfd7d

Читать полностью…

The Bug Bounty Hunter

Google & Arm - Raising The Bar on GPU Security

http://security.googleblog.com/2024/09/google-arm-raising-bar-on-gpu-security.html

Читать полностью…

The Bug Bounty Hunter

Full Account Takeover via Facebook OAuth Misconfiguration

0x_xnum/full-account-takeover-via-facebook-oauth-misconfiguration-9e30fe1c1da1" rel="nofollow">https://medium.com/@0x_xnum/full-account-takeover-via-facebook-oauth-misconfiguration-9e30fe1c1da1

Читать полностью…

The Bug Bounty Hunter

Latest Nuclei Release v3.3.3!

https://github.com/projectdiscovery/nuclei/releases/tag/v3.3.3

Читать полностью…

The Bug Bounty Hunter

The MISSING PLUGIN for API Testing!

https://www.youtube.com/watch?v=BmPiHkpz3MA

Читать полностью…

The Bug Bounty Hunter

Hacking Kia: Remotely Controlling Cars With Just a License Plate

https://samcurry.net/hacking-kia

Читать полностью…

The Bug Bounty Hunter

Latest Nuclei Release v3.3.3!

https://github.com/projectdiscovery/nuclei/releases/tag/v3.3.3

Читать полностью…

The Bug Bounty Hunter

CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability Deep-Dive – Horizon3.ai

https://www.horizon3.ai/attack-research/cve-2024-28987-solarwinds-web-help-desk-hardcoded-credential-vulnerability-deep-dive/

Читать полностью…

The Bug Bounty Hunter

Feedback-Driven Interviewing at HackerOne

https://www.hackerone.com/culture-and-talent/feedback-driven-interviewing-hackerone

Читать полностью…

The Bug Bounty Hunter

256 - Future of the Windows Kernel and Encryption Nonce Reuse

https://dayzerosec.com/podcast/256.html

Читать полностью…

The Bug Bounty Hunter

Unauthenticated API Endpoint to Create Support Ticket Worth $500

https://vijetareigns.medium.com/unauthenticated-api-endpoint-to-create-support-ticket-worth-500-789e91ad9a00

Читать полностью…

The Bug Bounty Hunter

Hacking and securing ElectronJS apps

https://pentesting.academy/p/hacking-and-securing-electronjs-apps

Читать полностью…

The Bug Bounty Hunter

StarkeBlog - CVE Wednesday - CVE-2024-20439

https://starkeblog.com/cve-wednesday/cisco/2024/09/20/cve-wednesday-cve-2024-20439.html

Читать полностью…

The Bug Bounty Hunter

Using YouTube to steal your files

https://lyra.horse/blog/2024/09/using-youtube-to-steal-your-files/

Читать полностью…

The Bug Bounty Hunter

Modern iOS Pentesting: No Jailbreak Needed - My Framer Site

https://dvuln.com/blog/modern-ios-pentesting-no-jailbreak-needed

Читать полностью…

The Bug Bounty Hunter

Latest Nuclei Release v3.3.4!

https://github.com/projectdiscovery/nuclei/releases/tag/v3.3.4

Читать полностью…

The Bug Bounty Hunter

Plan Ristriction Bypass for Slack Integration: 500$ Improper Validation Check Bug

a13h1/plan-ristriction-bypass-for-slack-integration-500-improper-validation-check-bug-0c1acf6f01d3" rel="nofollow">https://medium.com/@a13h1/plan-ristriction-bypass-for-slack-integration-500-improper-validation-check-bug-0c1acf6f01d3

Читать полностью…

The Bug Bounty Hunter

Zimbra - Remote Command Execution (CVE-2024-45519)

https://blog.projectdiscovery.io/zimbra-remote-code-execution/

Читать полностью…

The Bug Bounty Hunter

10 Years of the GitHub Security Bug Bounty Program

https://www.hackerone.com/customer-stories/10-years-github-security-bug-bounty-program

Читать полностью…

The Bug Bounty Hunter

Attacking UNIX Systems via CUPS, Part I

https://www.evilsocket.net/2024/09/26/Attacking-UNIX-systems-via-CUPS-Part-I/

Читать полностью…

The Bug Bounty Hunter

Wiz Research Finds Critical NVIDIA AI Vulnerability Affecting Containers Using NVIDIA GPUs, Including Over 35% of Cloud Environments | Wiz Blog

https://www.wiz.io/blog/wiz-research-critical-nvidia-ai-vulnerability

Читать полностью…

The Bug Bounty Hunter

RedTeam Pentesting GmbH - WatchGuard SSO Protocol is Unencrypted and Unauthenticated

https://www.redteam-pentesting.de/en/advisories/rt-sa-2024-006/

Читать полностью…

The Bug Bounty Hunter

API Security: The 6 biggest challenges AppSec teams face, and how to solve them.

https://portswigger.net/blog/api-security-the-6-biggest-challenges-appsec-teams-face-and-how-to-solve-them

Читать полностью…

The Bug Bounty Hunter

A step-by-step guide to writing an iOS kernel exploit
https://alfiecg.uk/2024/09/24/Kernel-exploit.html

Читать полностью…

The Bug Bounty Hunter

The Hacker Mentality

https://www.youtube.com/watch?v=X2uK5fd0VxA

Читать полностью…

The Bug Bounty Hunter

What HackerOne Customers Say About the Problems Hackers Solve

https://www.hackerone.com/customer-stories/hackers-solve-problems

Читать полностью…

The Bug Bounty Hunter

4 exploits, 1 bug: exploiting CVE-2024-20017 4 different ways

https://blog.coffinsec.com/0day/2024/08/30/exploiting-CVE-2024-20017-four-different-ways.html

Читать полностью…

The Bug Bounty Hunter

Simplifying XSS Detection with Nuclei - A New Approach

https://blog.projectdiscovery.io/simplifying-xss-detection-with-nuclei/

Читать полностью…

The Bug Bounty Hunter

Pentesting for Web Applications

https://www.hackerone.com/penetration-testing/web-applications

Читать полностью…
Subscribe to a channel