jsonp is a Burp Extension which attempts to reveal JSONP functionality behind JSON endpoints. This could help reveal cross-site script inclusion vulnerabilities or aid in bypassing content security policies.
https://github.com/kapytein/jsonp
https://github.com/kapytein/jsonp
GitHub
GitHub - kapytein/jsonp: jsonp is a Burp Extension which attempts to reveal JSONP functionality behind JSON endpoints.
jsonp is a Burp Extension which attempts to reveal JSONP functionality behind JSON endpoints. - kapytein/jsonp
Hail Frida!! The Universal SSL pinning bypass for Android applications
https://medium.com/@ved_wayal/hail-frida-the-universal-ssl-pinning-bypass-for-android-e9e1d733d29
https://medium.com/@ved_wayal/hail-frida-the-universal-ssl-pinning-bypass-for-android-e9e1d733d29
Medium
Hail Frida!! The Universal SSL pinning bypass for Android applications
In this article, I’ll explain how to bypass SSL pinning of any android application using frida framework.
How to look for JS files Vulnerability for fun and profit?
https://medium.com/@Skylinearafat/how-to-look-for-js-files-vulnerability-for-fun-and-profit-78bfdfbd6731
https://medium.com/@Skylinearafat/how-to-look-for-js-files-vulnerability-for-fun-and-profit-78bfdfbd6731
Medium
How to look for JS files Vulnerability for fun and profit?
Hey Folks, It’s been a while I was away from Bug Hunting. These days I got some chances to focus on hunting again I decided to hunt on…
Access Projects And create projects in gitlab pre production server
https://hackerone.com/reports/540711
https://hackerone.com/reports/540711
HackerOne
GitLab disclosed on HackerOne: Access Projects And create projects...
### Steps to reproduce
Go to https://pre.gitlab.com
Here any one can register and can view the pre production projects of gitlab developers.
I have registered in...
Go to https://pre.gitlab.com
Here any one can register and can view the pre production projects of gitlab developers.
I have registered in...
Opening up a Universal XSS vulnerability in Microsoft Edge
https://hackerone.com/reports/463915
https://hackerone.com/reports/463915
HackerOne
Kaspersky disclosed on HackerOne: URL Advisor component in KIS...
**Summary**
In Microsoft Edge, URL Advisor UI is served as first-party content on every domain. So the XSS vulnerability I found in this UI automatically applies to all websites, it allows running...
In Microsoft Edge, URL Advisor UI is served as first-party content on every domain. So the XSS vulnerability I found in this UI automatically applies to all websites, it allows running...
Facebook Has Launched a Bug Bounty Program for Libra Blockchain
https://www.pcmag.com/news/370402/facebook-launches-bug-bounty-program-for-libra-blockchain
https://www.pcmag.com/news/370402/facebook-launches-bug-bounty-program-for-libra-blockchain
PCMAG
Facebook Launches Bug Bounty Program for Libra Blockchain
The Libra Association rolls out Libra Bug Bounty Program, offering up to $10,000 for uncovering critical blockchain security issues underlying the unreleased cryptocurrency.
CSRF leads to a stored self xss
https://hackerone.com/reports/323005
https://hackerone.com/reports/323005
HackerOne
Imgur disclosed on HackerOne: CSRF leads to a stored self xss
Followup from #311460
#Summary
Self xss and CSRF are both out of scope, but when paired it is possible to create an attack on a user.
#Description
A favorites folder with an xss payload for a...
#Summary
Self xss and CSRF are both out of scope, but when paired it is possible to create an attack on a user.
#Description
A favorites folder with an xss payload for a...
Google adds all Android apps with +100m installs to its bug bounty program
https://www.zdnet.com/article/google-adds-all-android-apps-with-100m-installs-to-its-bug-bounty-program/
https://www.zdnet.com/article/google-adds-all-android-apps-with-100m-installs-to-its-bug-bounty-program/
ZDNet
Google adds all Android apps with +100m installs to its bug bounty program
Google will pay security researchers for bugs they report in non-Google Android apps that have over 100 million installs.
Bypass Email Verification -- Able to Access Internal Gitlab Services that use Login with Gitlab and Perform Check on email domain
https://hackerone.com/reports/565883
https://hackerone.com/reports/565883
HackerOne
GitLab disclosed on HackerOne: Bypass Email Verification -- Able to...
### Summary
Hi, I found the new SCIM provisioning function allows any group owner in gitlab to create any user with verified email address. i.e. I can create user with email address...
Hi, I found the new SCIM provisioning function allows any group owner in gitlab to create any user with verified email address. i.e. I can create user with email address...
Forwarded from Android Security & Malware
Analysis and Reproduction of iOS/OSX Vulnerability: CVE-2019-7286
▪️CVE-2019-7286 was exploited in the wild
▪️The vulnerability seems to be of critical severity
▪️Vulnerability reproduced (includes POC code)
▪️The vulnerability could be used to escalate privileges to root as part of a chain for jailbreak on iOS 12.1.3.
https://blog.zecops.com/vulnerabilities/analysis-and-reproduction-of-cve-2019-7286/
▪️CVE-2019-7286 was exploited in the wild
▪️The vulnerability seems to be of critical severity
▪️Vulnerability reproduced (includes POC code)
▪️The vulnerability could be used to escalate privileges to root as part of a chain for jailbreak on iOS 12.1.3.
https://blog.zecops.com/vulnerabilities/analysis-and-reproduction-of-cve-2019-7286/
Jamf
Jamf Threat Labs | Blog
The fastest and cross-platform subdomain enumerator, don't waste your time
https://github.com/Edu4rdSHL/findomain
https://github.com/Edu4rdSHL/findomain
GitHub
GitHub - Findomain/Findomain: The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP…
The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, subdomain monitoring, alerts via Discord, Slack and Telegram, ...
Go Local : Solving intigriti 3rd XSS Challenge
https://blog.fadyothman.com/go-local-solving-intigriti-challenge-3/
https://blog.fadyothman.com/go-local-solving-intigriti-challenge-3/
Fady's Technical Blog
Go Local : Solving Intigriti 3rd XSS Challenge
A writeup for the third XSS challenge made by intigriti describing both failed and successful attempts at solving this challenge,
Graphql Bug to Steal Anyone’s Address
https://medium.com/@pratiky054/graphql-bug-to-steal-anyones-address-fc34f0374417
https://medium.com/@pratiky054/graphql-bug-to-steal-anyones-address-fc34f0374417
Medium
Graphql Abuse to Steal Anyone’s Address
Introduction
[ BUG BOUNTY ] Self XSS + ClickJacking = Good XSS | Tokopedia
https://medium.com/@danangtriatmaja/bug-bounty-self-xss-clickjacking-good-xss-tokopedia-8df7a65e0955
https://medium.com/@danangtriatmaja/bug-bounty-self-xss-clickjacking-good-xss-tokopedia-8df7a65e0955
Medium
[ BUG BOUNTY ] Self XSS + ClickJacking = Good XSS | Tokopedia
Hi sobat, bagaimana kabarnya ? semoga senantiasa sehat selalu dan diberikan kelancaran dalam aktifitasnya. ^-^
Kali Linux 2019.3 Release
https://www.kali.org/releases/kali-linux-2019-3-release/
https://www.kali.org/releases/kali-linux-2019-3-release/
Kali Linux
Kali Linux 2019.3 Release (Cloudflare, Kali-status, metapackages, Helper-Scripts & LXD) | Kali Linux Blog
We are pleased to announce that our third release of 2019, Kali Linux 2019.3, is available immediately for download. This release brings our kernel up to version 5.2.9, and includes various new features across the board with NetHunter, ARM and packages (plus…
Bug Bytes #34 – Challenge Winner, Bounty Economy and CSRF bible
http://blog.intigriti.com/2019/09/03/bug-bytes-34-challenge-winner-bounty-economy-and-csrf-bible/
http://blog.intigriti.com/2019/09/03/bug-bytes-34-challenge-winner-bounty-economy-and-csrf-bible/
Intigriti
Bug Bytes #34 - Challenge Winner, Bounty Economy and CSRF bible
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series are curated by Mariem, better known as PentesterLand. Every week, she keeps us updated with a compre...