Bug Bounty should be a goto solution for your web3 security needs
Imagine your web3 company as a fortress in the digital landscape, constantly under siege from cyber threats. In this battle for security…Continue reading on Medium »
Read more...
Imagine your web3 company as a fortress in the digital landscape, constantly under siege from cyber threats. In this battle for security…Continue reading on Medium »
Read more...
Medium
Bug Bounty should be a goto solution for your web3 security needs
Imagine your web3 company as a fortress in the digital landscape, constantly under siege from cyber threats. In this battle for security…
Bug Bounty should be a goto solution for your web3 security needs
https://securrtech.medium.com/bug-bounty-should-be-a-goto-solution-for-your-web3-security-needs-46b0f07b1a96?source=rss------bug_bounty-5
https://securrtech.medium.com/bug-bounty-should-be-a-goto-solution-for-your-web3-security-needs-46b0f07b1a96?source=rss------bug_bounty-5
Imagine your web3 company as a fortress in the digital landscape, constantly under siege from cyber threats. In this battle for security…Continue reading on Medium » (https://securrtech.medium.com/bug-bounty-should-be-a-goto-solution-for-your-web3-security-needs-46b0f07b1a96?source=rss------bug_bounty-5)
Jenkins Arbitrary File Reading Vulnerability (CVE-2024–23897) — Bug Bounty Tuesday
Today is Bug bounty Tuesday, I will share with you about Jenkins Arbitrary File…Continue reading on Medium »
Read more...
Today is Bug bounty Tuesday, I will share with you about Jenkins Arbitrary File…Continue reading on Medium »
Read more...
Medium
Jenkins Arbitrary File Reading Vulnerability (CVE-2024–23897) — Bug Bounty Tuesday
Today is Bug bounty Tuesday, I will share with you about Jenkins Arbitrary File…
Huntr-Com-Bug-Bounties-Collector - Keep Watching New Bug Bounty (Vulnerability) Postings
http://www.kitploit.com/2024/02/huntr-com-bug-bounties-collector-keep.html
http://www.kitploit.com/2024/02/huntr-com-bug-bounties-collector-keep.html
New bug bounty(vulnerabilities) collector
Requirements
Chrome with GUI (If you encounter trouble with script execution, check the status of VMs GPU features, if available.) Chrome WebDriver
Preview
# python3 main.py
*2024-02-20 16:14:47.836189*
1. Arbitrary File Reading due to Lack of Input Filepath Validation
- Feb 6th 2024 / High (CVE-2024-0964)
- gradio-app/gradio
- https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741/
2. View Barcode Image leads to Remote (https://www.kitploit.com/search/label/Remote) Code Execution
- Jan 31st 2024 / Critical (CVE: Not yet)
- dolibarr/dolibarr
- https://huntr.com/bounties/f0ffd01e-8054-4e43-96f7-a0d2e652ac7e/
(delimiter-based file database) # vim (https://www.kitploit.com/search/label/Vim) feeds.db
1|2024-02-20 16:17:40.393240|7fe14fd58ca2582d66539b2fe178eeaed3524342|CVE-2024-0964|https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741/
2|2024-02-20 16:17:40.393987|c6b84ac808e7f229a4c8f9fbd073b4c0727e07e1|CVE: Not yet|https://huntr.com/bounties/f0ffd01e-8054-4e43-96f7-a0d2e652ac7e/
3|2024-02-20 16:17:40.394582|7fead9658843919219a3b30b8249700d968d0cc9|CVE: Not yet|https://huntr.com/bounties/d6cb06dc-5d10-4197-8f89-847c3203d953/
4|2024-02-20 16:17:40.395094|81fecdd74318ce7da9bc29e81198e62f3225bd44|CVE: Not yet|https://huntr.com/bounties/d875d1a2-7205-4b2b-93cf-439fa4c4f961/
5|2024-02-20 16:17:40.395613|111045c8f1a7926174243db403614d4a58dc72ed|CVE: Not yet|https://huntr.com/bounties/10e423cd-7051-43fd-b736-4e18650d0172/
Notes
This code is designed to parse HTML elements from huntr.com, so it may not function correctly if the HTML page structure changes. In case of errors during parsing, exception handling has been included, so if it doesn't work as expected, please inspect the HTML source for any changes. If get in trouble In a typical cloud (https://www.kitploit.com/search/label/Cloud) environment, scripts (https://www.kitploit.com/search/label/Scripts) may not function properly within virtual machines (VMs).
Download Huntr-Com-Bug-Bounties-Collector (https://github.com/password123456/huntr-com-bug-bounties-collector)
Requirements
Chrome with GUI (If you encounter trouble with script execution, check the status of VMs GPU features, if available.) Chrome WebDriver
Preview
# python3 main.py
*2024-02-20 16:14:47.836189*
1. Arbitrary File Reading due to Lack of Input Filepath Validation
- Feb 6th 2024 / High (CVE-2024-0964)
- gradio-app/gradio
- https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741/
2. View Barcode Image leads to Remote (https://www.kitploit.com/search/label/Remote) Code Execution
- Jan 31st 2024 / Critical (CVE: Not yet)
- dolibarr/dolibarr
- https://huntr.com/bounties/f0ffd01e-8054-4e43-96f7-a0d2e652ac7e/
(delimiter-based file database) # vim (https://www.kitploit.com/search/label/Vim) feeds.db
1|2024-02-20 16:17:40.393240|7fe14fd58ca2582d66539b2fe178eeaed3524342|CVE-2024-0964|https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741/
2|2024-02-20 16:17:40.393987|c6b84ac808e7f229a4c8f9fbd073b4c0727e07e1|CVE: Not yet|https://huntr.com/bounties/f0ffd01e-8054-4e43-96f7-a0d2e652ac7e/
3|2024-02-20 16:17:40.394582|7fead9658843919219a3b30b8249700d968d0cc9|CVE: Not yet|https://huntr.com/bounties/d6cb06dc-5d10-4197-8f89-847c3203d953/
4|2024-02-20 16:17:40.395094|81fecdd74318ce7da9bc29e81198e62f3225bd44|CVE: Not yet|https://huntr.com/bounties/d875d1a2-7205-4b2b-93cf-439fa4c4f961/
5|2024-02-20 16:17:40.395613|111045c8f1a7926174243db403614d4a58dc72ed|CVE: Not yet|https://huntr.com/bounties/10e423cd-7051-43fd-b736-4e18650d0172/
Notes
This code is designed to parse HTML elements from huntr.com, so it may not function correctly if the HTML page structure changes. In case of errors during parsing, exception handling has been included, so if it doesn't work as expected, please inspect the HTML source for any changes. If get in trouble In a typical cloud (https://www.kitploit.com/search/label/Cloud) environment, scripts (https://www.kitploit.com/search/label/Scripts) may not function properly within virtual machines (VMs).
Download Huntr-Com-Bug-Bounties-Collector (https://github.com/password123456/huntr-com-bug-bounties-collector)
Jenkins Arbitrary File Reading Vulnerability (CVE-2024–23897) — Bug Bounty Tuesday
https://medium.com/@kerstan/jenkins-arbitrary-file-reading-vulnerability-cve-2024-23897-bug-bounty-tuesday-8e3a69443d9b?source=rss------bug_bounty-5
https://medium.com/@kerstan/jenkins-arbitrary-file-reading-vulnerability-cve-2024-23897-bug-bounty-tuesday-8e3a69443d9b?source=rss------bug_bounty-5
Today is Bug bounty Tuesday, I will share with you about Jenkins Arbitrary File…Continue reading on Medium » (https://medium.com/@kerstan/jenkins-arbitrary-file-reading-vulnerability-cve-2024-23897-bug-bounty-tuesday-8e3a69443d9b?source=rss------bug_bounty-5)
Reconnaissance: A Google-Dorking Affair
High quality reconnaissance is a key skill in many areas of information security…Continue reading on Medium »
Read more...
High quality reconnaissance is a key skill in many areas of information security…Continue reading on Medium »
Read more...
Medium
Reconnaissance: A Google-Dorking Affair
High quality reconnaissance is a key skill in many areas of information security…
Reconnaissance: A Google-Dorking Affair
https://medium.com/@kieran.x.willey/reconnaissance-a-google-dorking-affair-21edfb4e3b0f?source=rss------bug_bounty-5
https://medium.com/@kieran.x.willey/reconnaissance-a-google-dorking-affair-21edfb4e3b0f?source=rss------bug_bounty-5
High quality reconnaissance is a key skill in many areas of information security…Continue reading on Medium » (https://medium.com/@kieran.x.willey/reconnaissance-a-google-dorking-affair-21edfb4e3b0f?source=rss------bug_bounty-5)
The Exploitation of Massive Slack Workspaces Registration Vulnerability
Greetings, fellow cyber voyagers!Continue reading on Medium »
Read more...
Greetings, fellow cyber voyagers!Continue reading on Medium »
Read more...
The Exploitation of Massive Slack Workspaces Registration Vulnerability
https://medium.com/@siratsami71/the-exploitation-of-massive-slack-workspaces-registration-vulnerability-0c0e76e5cd3e?source=rss------bug_bounty-5
https://medium.com/@siratsami71/the-exploitation-of-massive-slack-workspaces-registration-vulnerability-0c0e76e5cd3e?source=rss------bug_bounty-5
Greetings, fellow cyber voyagers!Continue reading on Medium » (https://medium.com/@siratsami71/the-exploitation-of-massive-slack-workspaces-registration-vulnerability-0c0e76e5cd3e?source=rss------bug_bounty-5)
CVE-2023–40000: How Safe Is Your Internet Box? ️
Cisco Device Hack Alarms Web WorldContinue reading on Coded Tech Talk »
Read more...
Cisco Device Hack Alarms Web WorldContinue reading on Coded Tech Talk »
Read more...
CVE-2023–40000: How Safe Is Your Internet Box? ️
https://medium.com/coded-tech-talk/cve-2023-40000-how-safe-is-your-internet-box-%EF%B8%8F-06ff1f872f7b?source=rss------bug_bounty-5
https://medium.com/coded-tech-talk/cve-2023-40000-how-safe-is-your-internet-box-%EF%B8%8F-06ff1f872f7b?source=rss------bug_bounty-5