Few months ago I found an 'issue' in @Instagram that allowed an attacker to watch a live stream without showing up as a viewer / increasing the view count. The Meta security team didn't consider it a vulnerability.
https://t.co/EVrWcQSfCc
Wayback Machine runs #javascript in the context of the vulnerable application so I highly recommend you to #XSS something with https://t.co/Z14TZ1TULn so you can use any JS code you want after the snapshot of a vulnerable page.
https://t.co/CS0HhBiZHt
This is a resource factory for anyone looking forward to starting bug hunting and would require guidance as a beginner.
https://t.co/wTkiayAMhQ #bugbountytips
Open source dashboards for AWS 📊
✅ Visualize assets & security reports
✅ 100+ dashboards out of the box
✅ Build your own with HCL & SQOpen source dashboards for AWS 📊
✅ Visualize assets & security reports
✅ 100+ dashboards out of the box
✅ Build your own with HCL & SQOpen source dashboards for AWS 📊
✅ Visualize assets & security reports
✅ 100+ dashboards out of the box
✅ Build your own with HCL & SQOpen source dashboards for AWS 📊
✅ Visualize assets & security reports
✅ 100+ dashboards out of the box
✅ Build your own with HCL & SQL
GOAD (Game Of Active Directory)
Part 1 - Reconnaissance and scan
https://t.co/nw9pW4kO7q
Part 2 - Find users
https://t.co/T6Lw83eQRk
Part 3 - Enumeration with user
https://t.co/Smn1oFoggH
->https://t.co/OP4AkPtyZZ
#infosec#thesecureedge#ad#hacking#bugbountytips#tech#AI
I decided to make a homage-post to @homakov and @Nirgoldshlager about different OAuth-token leakage methods I've been researching – ten years after their blog posts that inspired me to start hunt for bugs ♥️ thank you.
https://t.co/pODPvDUOU9