If you like bounties, I highly recommend this presentation from @tincho_508 on novel web cache deception techniques. It comes with @WebSecAcademy labs too!
https://t.co/XdE0SN3Ccz
📣 To celebrate three million of us, we’re giving away limited-edition t-shirts and annual subscriptions throughout our social channels.
Like and retweet to be in with the chance of winning! 😉
📣#burpchallenge Only 24 hours left to complete the latest mini challenge! Complete the specified XSS, OAuth, authentication, request smuggling, and SSRF labs to be entered into the draw, for a chance to win exclusive Burp swag. https://t.co/lHeinwZ0tI
@HackingLZ#BadRedTeamTips
Domain Admins never remember to exclude themselves from account lockout
Brute force all domain admin accounts to keep them locked out so you can attack without them being able to stop you
10 websites to find remote jobs with USD salary
1. weworkremotely. com
2. hired. com
3. justremote. co
4. remoteleaf. com
5. remote. co
6. dailyremote. com
7. producthunt. com/jobs
8. flexjobs. com
9. remotive. io
10. remoteok. com
Find SSRF on all your huge target list via httpx:-
1:- Download https://t.co/pRv19Qf48c
2:- Add https://t.co/R928jn8xlb on {target}
3:- Run httpx.
httpx -paths ssrf-parameters.txt -threads 200 -o ssrf.txt
4:- Screenshot the result
gowitness file -f ssrf.txt
Good luck
Looking for something to kick-start the new year? Our Web Security Academy has more than 200 labs covering the latest and greatest vulnerabilities, and learning materials from our team of experts. Get stuck in!
#training#development#newyear https://t.co/fN4R36Y6DQ