Ready for the event? Report submissions will start tomorrow at 9:00 GTM+1! https://t.co/OmkXw6rZGo. Claim your spot on the hackerone leaderboard! #bugbounty#hackerone
Hey hackers! 📣 Check out this incredible live hacking opportunity.
Hackers from all over can participate in this challenge with a few surprises for anyone onsite at the #DefCamp#HackingVillage November 23-24.🙌
See the details➡️ https://t.co/daG6cYbPdY.
That's a wrap for Round 1 of the #AmbassadorWorldCup! Congrats on an incredible round of teamwork. 🙌
Take a look at the stats! 📊
👨💻 239 hackers
🪲 262 valid bugs
💰170 bounties awarded
🤑 $515K in bounties paid (so far)
See the full recap here: https://t.co/TO18sqZWxI
I do have a problem with incorrect CVEs assigned. Just run into CVE-2021-45229, checked the Apache Airflow v2.2.3 source-code, input validation & html encoding is in place. No bypasses found until now. And this is just one of many examples I've found over time.
@TzahPahima I’ve read your technical vulnerability walkthrough. Pretty straight forward, but it’s still not clear to me why did you need to trigger that race condition?
That's it for now, did I miss anything?
A full and expanded blog with MORE & ALL links for this thread can be found on my blog:
https://t.co/VYpsoGToEj
✌🏻For more resources follow, retweet, & like!✌️
11/