Forwarded from The Bug Bounty Hunter
🚨NEW CHALLENGE: Can you find the XSS vulnerability? 🕵️♂️
🎁 Win a Burp Pro license and private invites at
Via: https://twitter.com/intigriti/status/1178641697779191808
🎁 Win a Burp Pro license and private invites at
Via: https://twitter.com/intigriti/status/1178641697779191808
Twitter
🚨NEW CHALLENGE: Can you find the XSS vulnerability? 🕵️
🎁 Win a Burp Pro license and private invites at
👉https://t.co/ujjUzeuRt2! 👈
#HackWithIntigriti
🎁 Win a Burp Pro license and private invites at
👉https://t.co/ujjUzeuRt2! 👈
#HackWithIntigriti
Forwarded from The Bug Bounty Hunter
Steal ALL collateral during liquidation by exploiting lack of validation in
flip.kick
https://hackerone.com/reports/684092HackerOne
BlockDev Sp. Z o.o disclosed on HackerOne: Steal ALL collateral...
## Summary:
The `flip` contract allows for the MCD system to auction collateral in exchange for DAI.
A lack of validation in the method `flip.kick` allows an attacker to create an auction with a...
The `flip` contract allows for the MCD system to auction collateral in exchange for DAI.
A lack of validation in the method `flip.kick` allows an attacker to create an auction with a...
Forwarded from The Bug Bounty Hunter
How a double-free bug in WhatsApp turns to RCE
https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/
https://awakened1712.github.io/hacking/hacking-whatsapp-gif-rce/
Home
How a double-free bug in WhatsApp turns to RCE
In this blog post, I’m going to share about a double-free vulnerability that I discovered in WhatsApp for Android, and how I turned it into an RCE. I informed this to Facebook. Facebook acknowledged and patched it officially in WhatsApp version 2.19.244.…
Forwarded from The Bug Bounty Hunter
URL Bar Spoofing Flaw in Safari for iOS 12.3 and iOS 13 Beta | CVE-2019–8727
https://medium.com/@justm0rph3u5/url-bar-spoofing-in-safari-for-ios-12-3-and-ios-13-beta-cve-2019-8727-d87490f8ee29
https://medium.com/@justm0rph3u5/url-bar-spoofing-in-safari-for-ios-12-3-and-ios-13-beta-cve-2019-8727-d87490f8ee29
Medium
URL Bar Spoofing in Safari for iOS 12.3 and iOS 13 Beta | CVE-2019–8727
While working for browser-based attacks on the URL bar, I learned a way where it was still possible to spoof address bar in safari. None…
Forwarded from The Bug Bounty Hunter
HTTP Desync Attacks: what happened next
https://portswigger.net/research/http-desync-attacks-what-happened-next
https://portswigger.net/research/http-desync-attacks-what-happened-next
PortSwigger Research
HTTP Desync Attacks: what happened next
Last month I published HTTP Desync Attacks: Request Smuggling Reborn. Since then, there's been a range of new developments. While vendors have been deploying fixes and publishing advisories, I've devi
Forwarded from The Bug Bounty Hunter
Tools to play around #JavaScript files + extracting URLs
Via: https://twitter.com/soaj1664ashar/status/1179710102871433216
Via: https://twitter.com/soaj1664ashar/status/1179710102871433216
Twitter
Ashar Javed
Tools to play around #JavaScript files + extracting URLs github.com/cablej/FileCha… github.com/003random/getJS github.com/nahamsec/JSPar… github.com/zseano/JS-Scan github.com/Lopseg/Jsdir github.com/jobertabma/rel… github.com/GerbenJavado/L… please add, if…
Confluence Unauthorized RCE Vulnerability (CVE-2019-3396) Analysis
https://paper.seebug.org/886/
https://paper.seebug.org/886/
Forwarded from The Bug Bounty Hunter
Subdomains Enumeration: what is, how to do it, monitoring automation using webhooks and centralizing your findings
https://medium.com/@edu4rdshl/subdomains-enumeration-what-is-how-to-do-it-monitoring-automation-using-webhooks-and-5e0a0c6d9127
https://medium.com/@edu4rdshl/subdomains-enumeration-what-is-how-to-do-it-monitoring-automation-using-webhooks-and-5e0a0c6d9127
Medium
Subdomains Enumeration: what is, how to do it, monitoring automation using webhooks and…
If you are reading is possibly because you:
Forwarded from The Bug Bounty Hunter
Abusing PHP strip tags to bypass modern WAF to exploit XSS
https://tasteofsecurity.com/security/php-strip-tags-to-bypass-waf-xss/
https://tasteofsecurity.com/security/php-strip-tags-to-bypass-waf-xss/