This article dives into some open source tooling that can be leveraged as a cost-effective way to enhance security posture. BeEF is listed as a notable open source browser security tool. Read here: https://t.co/c9B0A5Mzmf
A DOM XSS vulnerability in Gartner's Peer Insights Widget affected the sites of Gradle, LogRhythm, SentinelOne, Synopsys, Veeam, Vodafone and more. Details of the bug, the patch, the bypass, and the final patch are up at https://t.co/uVi52e9JWd
I was playing for a few hours with the old @beefproject which I remember using almost a decade back for my Metasploit Megaprimers.
Was shocked to see most attacks still work quite predictably on all modern browsers with endpoint security solutions running!
@ethaDEV Heroku does not support sqlite3 so you would need to switch database to Postgres. This thread https://t.co/TEfwYonOsq while old still has relevant information on doing so
Stream recording of BeEF being used to demonstrate XSS: https://t.co/ghTT5u88al. Courtesy of the #BrisJS monthly meetup and contributors https://t.co/bbJJgPtjaf and https://t.co/GHVxaOHbac