Proud to release a new tool called STUNNER to test TURN servers (mostly used in WebRTC). It can open a local socks server and relay all traffic over vuln devices into the internal network
https://t.co/xdNlS1gUl8
Also found some vulns in Cisco Expressway: https://t.co/8z5QojKsOs
Sponsor Spotlight: We would like to thank the City of Vienna for supporting #BSidesVienna. You can help make the city's digital offerings safer by participating in their public bug bounty program. Find out more at https://t.co/p8OiKTXOZw. And yes, they even pay out bounties!
It's official: #BSidesVienna 0x7EA will take place on 27 June 2026. The call for papers/workshops will be open soon. Thank you to all the sponsors who have offered their support to make this event possible at such short notice!
The Head of Claude Code at Anthropic said he hasn’t written code by hand in months.
In 2 days he shipped 49 full features. All written 100% by AI.
He just dropped a 30 min talk on exactly how he does it.
Worth more than any $500 vibe coding course. Bookmark it:
Jira and Confluence is badass
They're going to train off your data unless you opt-out by August, 17th
Thank you AI overlords for draining us of literally everything
We're back from our slumber early and have exciting news! If we can secure enough sponsorship, we might be able to hold a #BSidesVienna event in the summer. Consider this your call for sponsors! We only have a few weeks to organize everything. Spread the word and stay tuned!
Quickly enumerate all Microsoft 365 tenant domains, no login, new method > https://t.co/0ymsoolbXl 🥷
I quickly spun up this site, powered by GitHub Pages, backed by a Cloudflare worker, that enumerates all Microsoft 365 domains in a tenant using a new endpoint, after last year's patch by Microsoft. It's simple, free and fast.
#Microsoft #Domains #Security
#BSidesVienna is now live on #HackerTracker (https://t.co/EYg28kQ7yy). You can use the app to manage your own schedule for not only this event but for many more. https://t.co/veNVrC8KS7
Sponsor Spotlight: A big thanks goes out the the city of Vienna (@Stadt_Wien) for supporting #BSidesVienna. Check out their new public bug bounty over at https://t.co/F1mtau0XVY, they pay out bounties!
While you were all busy pressing F5 to get a ticket, we quietly released a surprise for you. The first #BSidesVienna schedule is released! Have a look: https://t.co/IqypEx0gQD
Sponsor Spotlight: Thanks to slashsec Red Teaming GmbH for sponsoring the afterparty for #BSidesVienna! They focus on Red Teaming and are always looking for talented offensive security professionals with a real hacker mindset. You can check them out at https://t.co/vMTszI2APq
Postgres 18 has been released, with Async I/O support.
Previously, all read requests were blocking, but with this update, they are no longer, delivering massive performance gains for read-heavy applications!
It's enabled by default on Postgres 18!
If you want to be a better hacker, be a developer. Be an admin. Set up infra. Build coding projects. Make an app that writes to a db. Or stores cookies. Or performs auth. You will find it easier to spot the cracks and failure points in systems once you have set them up yourself.