Tips for bug bounty beginners from a real life experience - Renaud Martinet
https://renaudmarti.net/posts/first-bug-bounty-submission/
https://renaudmarti.net/posts/first-bug-bounty-submission/
Renaud Martinet
Tips for bug bounty beginners from a real life experience
I’ve been aware of bug bounties for a few years now but never really felt I was capable of participating.
GitHub - trimstray/the-book-of-secret-knowledge: A collection of awesome lists, manuals, blogs, hacks, one-liners, cli/web tools and more. Especially for System and Network Administrators, DevOps, Pentesters or Security Researchers.
https://github.com/trimstray/the-book-of-secret-knowledge
https://github.com/trimstray/the-book-of-secret-knowledge
GitHub
GitHub - trimstray/the-book-of-secret-knowledge: A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners…
A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more. - trimstray/the-book-of-secret-knowledge
GitHub - P0cL4bs/WiFi-Pumpkin: Framework for Rogue Wi-Fi Access Point Attack
https://github.com/P0cL4bs/WiFi-Pumpkin
https://github.com/P0cL4bs/WiFi-Pumpkin
GitHub
GitHub - P0cL4bs/WiFi-Pumpkin-deprecated: DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3
DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3 - P0cL4bs/WiFi-Pumpkin-deprecated
Python Tutorials
http://www.primalsecurity.net/tutorials/python-tutorials/
http://www.primalsecurity.net/tutorials/python-tutorials/
www.primalsecurity.net
Overwhelmed With Homework? Try These 10 Tips to Reduce Stress | primalsecurity.net
Homework meltdown is not uncommon among students at any academic level, college, high school, or even middle school. To many students, homework can feel like a
awesome-web-security/README.md at master · qazbnm456/awesome-web-security · GitHub
https://github.com/qazbnm456/awesome-web-security/blob/master/README.md#pocs-database
https://github.com/qazbnm456/awesome-web-security/blob/master/README.md#pocs-database
GitHub
awesome-web-security/README.md at master · qazbnm456/awesome-web-security
🐶 A curated list of Web Security materials and resources. - qazbnm456/awesome-web-security
Dropgangs, or the future of darknet markets • Opaque Link
https://opaque.link/post/dropgang/
https://opaque.link/post/dropgang/
Gaining access to Uber's user data through AMPScript evaluation – Assetnote
http://blog.assetnote.io/bug-bounty/2019/01/14/gaining-access-to-ubers-user-data-through-ampscript-evaluation/
http://blog.assetnote.io/bug-bounty/2019/01/14/gaining-access-to-ubers-user-data-through-ampscript-evaluation/
Dokany/Google Drive File Stream Kernel Stack-based Buffer Overflow Vulnerability | GreyHatHacker.NET
http://www.greyhathacker.net/?p=1041
http://www.greyhathacker.net/?p=1041
GitHub - Bashfuscator/Bashfuscator: A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.
https://github.com/Bashfuscator/Bashfuscator
https://github.com/Bashfuscator/Bashfuscator
GitHub
GitHub - Bashfuscator/Bashfuscator: A fully configurable and extendable Bash obfuscation framework. This tool is intended to help…
A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team. - Bashfuscator/Bashfuscator
SMB and the return of the worm
https://blogs.cisco.com/security/smb-and-the-return-of-the-worm
https://blogs.cisco.com/security/smb-and-the-return-of-the-worm
Cisco Blogs
SMB and the return of the worm
Watch the threat landscape long enough, and you’ll see that some things are cyclical. Threat types and attack methods fall in and out of fashion. As the use of one...
Introduction to WebAuthn API – Ackermann Yuriy – Medium
https://medium.com/@herrjemand/introduction-to-webauthn-api-5fd1fb46c285
https://medium.com/@herrjemand/introduction-to-webauthn-api-5fd1fb46c285
Medium
Introduction to WebAuthn API
…or Level 1 Credential Management API extension for Public Key Credentials, and the untold stories of managing credentials in the browser…
Are you submitting bugs for free when others are being paid? Welcome to BugBounties!
https://medium.com/@zseano/are-you-submitting-bugs-for-free-when-others-are-being-paid-welcome-to-bugbounties-9e0fdb40a837
https://medium.com/@zseano/are-you-submitting-bugs-for-free-when-others-are-being-paid-welcome-to-bugbounties-9e0fdb40a837
GitHub - nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters: A list of resources for those interested in getting started in bug bounties
https://github.com/nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters
https://github.com/nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters
GitHub
GitHub - nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters: A list of resources for those interested in getting started in bug…
A list of resources for those interested in getting started in bug bounties - nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters
PWK Notes: Tunneling and Pivoting | 0xdf hacks stuff
https://0xdf.gitlab.io/2018/11/02/pwk-notes-tunneling.html
https://0xdf.gitlab.io/2018/11/02/pwk-notes-tunneling.html
0xdf hacks stuff
PWK Notes: Tunneling and Pivoting
That beautiful feeling of shell on a box is such a high. But once you realize that you need to pivot through that host deeper into the network, it can take you a bit out of your comfort zone. I’ve run into this in Sans Netwars, Hackthebox, and now in PWK.…
(2018-12-30) PowerShell Script To Reset The KrbTgt Account Password/Keys For Both RWDCs And RODCs – Jorge's Quest For Knowledge!
https://jorgequestforknowledge.wordpress.com/2018/12/30/powershell-script-to-reset-the-krbtgt-account-password-keys-for-both-rwdcs-and-rodcs/
https://jorgequestforknowledge.wordpress.com/2018/12/30/powershell-script-to-reset-the-krbtgt-account-password-keys-for-both-rwdcs-and-rodcs/
Jorge's Quest For Knowledge!
(2018-12-30) PowerShell Script To Reset The KrbTgt Account Password/Keys For Both RWDCs And RODCs
Information provided by Microsoft explaining why this is important KRBTGT Account Password Reset Scripts now available for customers – The original script written by Jared Poeppelman, who wor…
Debugging Android and iOS like a real G's with Dwarf GUI - Giovanni Rocca
http://www.giovanni-rocca.com/debugging-android-and-ios-like-a-real-gs-with-dwarf-gui/
http://www.giovanni-rocca.com/debugging-android-and-ios-like-a-real-gs-with-dwarf-gui/