In the realm of cybersecurity, uncovering vulnerabilities before they can be exploited is paramount. Recently, during an assessment of a…Continue reading on Medium » (https://medium.com/@anonymousshetty2003/uncovering-a-critical-vulnerability-unauthorized-access-to-sensitive-data-024182daa127?source=rss------bug_bounty-5)
14.26 Lab: Reflected XSS with AngularJS sandbox escape and CSP
https://cyberw1ng.medium.com/14-26-lab-reflected-xss-with-angularjs-sandbox-escape-and-csp-b98791b2a5a6?source=rss------bug_bounty-5
https://cyberw1ng.medium.com/14-26-lab-reflected-xss-with-angularjs-sandbox-escape-and-csp-b98791b2a5a6?source=rss------bug_bounty-5
This lab uses CSP and AngularJS. To solve the lab, perform a cross-site scripting attack that bypasses CSP, escapes the AngularJS sandbox…Continue reading on Medium » (https://cyberw1ng.medium.com/14-26-lab-reflected-xss-with-angularjs-sandbox-escape-and-csp-b98791b2a5a6?source=rss------bug_bounty-5)
Looking for VAPT Projects or Freelance Opportunities
https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/
<!-- SC_OFF -->Hey everyone, Hope you're all doing great! I'm a cybersecurity pro focusing on Vulnerability Assessment and Penetration Testing (VAPT). I've got advanced skills with tools like Burp Suite and have worked on some pretty cool projects, including deep dives into the security of websites and mobile apps. I'm on the hunt for new freelance gigs where I can provide VAPT services. If you or anyone you know needs help with securing their mobile apps, websites, or any other digital platforms, I'd love to connect. I can spot potential vulnerabilities and give detailed recommendations to tighten up your security. Also, if you have any tips on where I can find more freelance VAPT projects, I'd really appreciate the advice! Thanks a ton for your help! <!-- SC_ON --> submitted by /u/2x7r (https://www.reddit.com/user/2x7r)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/)
https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/
<!-- SC_OFF -->Hey everyone, Hope you're all doing great! I'm a cybersecurity pro focusing on Vulnerability Assessment and Penetration Testing (VAPT). I've got advanced skills with tools like Burp Suite and have worked on some pretty cool projects, including deep dives into the security of websites and mobile apps. I'm on the hunt for new freelance gigs where I can provide VAPT services. If you or anyone you know needs help with securing their mobile apps, websites, or any other digital platforms, I'd love to connect. I can spot potential vulnerabilities and give detailed recommendations to tighten up your security. Also, if you have any tips on where I can find more freelance VAPT projects, I'd really appreciate the advice! Thanks a ton for your help! <!-- SC_ON --> submitted by /u/2x7r (https://www.reddit.com/user/2x7r)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7pa8m/looking_for_vapt_projects_or_freelance/)
14.26 Lab: Reflected XSS with AngularJS sandbox escape and CSP
This lab uses CSP and AngularJS. To solve the lab, perform a cross-site scripting attack that bypasses CSP, escapes the AngularJS sandbox…Continue reading on Medium »
Read more...
This lab uses CSP and AngularJS. To solve the lab, perform a cross-site scripting attack that bypasses CSP, escapes the AngularJS sandbox…Continue reading on Medium »
Read more...
Medium
14.26 Lab: Reflected XSS with AngularJS sandbox escape and CSP
This lab uses CSP and AngularJS. To solve the lab, perform a cross-site scripting attack that bypasses CSP, escapes the AngularJS sandbox…
Kali Linux: Starting Out with Bug Bounty Hunting
IntroductionContinue reading on Medium »
Read more...
IntroductionContinue reading on Medium »
Read more...
Medium
Kali Linux: Starting Out with Bug Bounty Hunting
Introduction
Kali Linux: Starting Out with Bug Bounty Hunting
https://medium.com/@nimrashahidktk3/kali-linux-starting-out-with-bug-bounty-hunting-d7a0150645bd?source=rss------bug_bounty-5
https://medium.com/@nimrashahidktk3/kali-linux-starting-out-with-bug-bounty-hunting-d7a0150645bd?source=rss------bug_bounty-5
IntroductionContinue reading on Medium » (https://medium.com/@nimrashahidktk3/kali-linux-starting-out-with-bug-bounty-hunting-d7a0150645bd?source=rss------bug_bounty-5)
Complex Attack Types: Sample Scenarios 46
While attacking the complex structure in front of us, we will develop our sharp intelligence and penetration abilities, as well as…Continue reading on Medium »
Read more...
While attacking the complex structure in front of us, we will develop our sharp intelligence and penetration abilities, as well as…Continue reading on Medium »
Read more...
Medium
Complex Attack Types: Sample Scenarios 46
While attacking the complex structure in front of us, we will develop our sharp intelligence and penetration abilities, as well as…
Complex Attack Types: Sample Scenarios 46
https://medium.com/@brsdncr/complex-attack-types-sample-scenarios-46-a6707ef9e910?source=rss------bug_bounty-5
https://medium.com/@brsdncr/complex-attack-types-sample-scenarios-46-a6707ef9e910?source=rss------bug_bounty-5
While attacking the complex structure in front of us, we will develop our sharp intelligence and penetration abilities, as well as…Continue reading on Medium » (https://medium.com/@brsdncr/complex-attack-types-sample-scenarios-46-a6707ef9e910?source=rss------bug_bounty-5)
Is greyhack the game a good intro
https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/
<!-- SC_OFF -->I know it’s just a game, but for a beginner like me I’ve been using hackthebox for my learning. I also play hacknet. Prolly sound like a lot of noobs out there but just getting started. I feel like the game gets me familiar with the Unix commands. Any other tips for a beginner? <!-- SC_ON --> submitted by /u/Deep-Mycologist150 (https://www.reddit.com/user/Deep-Mycologist150)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/)
https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/
<!-- SC_OFF -->I know it’s just a game, but for a beginner like me I’ve been using hackthebox for my learning. I also play hacknet. Prolly sound like a lot of noobs out there but just getting started. I feel like the game gets me familiar with the Unix commands. Any other tips for a beginner? <!-- SC_ON --> submitted by /u/Deep-Mycologist150 (https://www.reddit.com/user/Deep-Mycologist150)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7vqlb/is_greyhack_the_game_a_good_intro/)
<!-- SC_OFF -->After reading a review of Treasure NFT on scamadviser.com I started doing some research on this. Screenshot (https://preview.redd.it/bybx8597podd1.png?width=1156&format=png&auto=webp&s=621a6739cf68d0a2c91d7f223b38fcde38048162) https://www.scamadviser.com/check-website/treasurenft.xyz?__cf_chl_rt_tk=OpiStaxMSR4lxlvjVvkTIDfhdxV041do4hXE1VI9cGY-1721456309-0.0.1.1-5802 what do you think about it ? Is this site is accessible in your country ? Website : https://treasurenft.xyz/ Is this app is available in your country ? App Store (ios) : https://apps.apple.com/us/app/treasurenft-trade-earn-nfts/id6444782351 Google play store (android) : https://play.google.com/store/apps/details?id=com.wanda.treasurenft <!-- SC_ON --> submitted by /u/sagarbiswas1 (https://www.reddit.com/user/sagarbiswas1)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7x3ko/suspicious_activity/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7x3ko/suspicious_activity/)
[link] (https://www.reddit.com/r/Pentesting/comments/1e7x3ko/suspicious_activity/) [comments] (https://www.reddit.com/r/Pentesting/comments/1e7x3ko/suspicious_activity/)
This is how i escalated self XSS with CSRF
Hi guys, Hope you are doing great, i am Pavan, Today i am going to share how i escalated a self XSS with CSRF.Continue reading on Medium »
Read more...
Hi guys, Hope you are doing great, i am Pavan, Today i am going to share how i escalated a self XSS with CSRF.Continue reading on Medium »
Read more...
Medium
This is how i escalated self XSS with CSRF
Hi guys, Hope you are doing great, i am Pavan, Today i am going to share how i escalated a self XSS with CSRF.
The Type of Bug That We Can’t See
Advanced XXE Injection- The Blind and CDATA KindContinue reading on ILLUMINATION »
Read more...
Advanced XXE Injection- The Blind and CDATA KindContinue reading on ILLUMINATION »
Read more...
Medium
The Type of Bug That We Can’t See
Advanced XXE Injection- The Blind and CDATA Kind
Business Logic Flaws A Critical Look at Business Application Security
In today’s rapidly evolving digital landscape, businesses rely heavily on complex applications to manage their operations, connect with…Continue reading on Medium »
Read more...
In today’s rapidly evolving digital landscape, businesses rely heavily on complex applications to manage their operations, connect with…Continue reading on Medium »
Read more...
Medium
Business Logic Flaws A Critical Look at Business Application Security
In today’s rapidly evolving digital landscape, businesses rely heavily on complex applications to manage their operations, connect with…