Time for another giveaway!
We will pick 6 winners to win one of the following:
1x Annual VIP @hackthebox_eu Licence
5x @PentesterLab 3 Month Licences
To enter:
1️⃣ Follow us @BugBountyDefcon
2️⃣ Like this post ❤️
3️⃣ Re-tweet this post 🔁
Giveaway open until Monday June 15th! GOOD LUCK!
When I align the OSI layers just right, I achieve network nirvana. My data flow is in such perfect harmony, that I stopped measuring uptime in days, but instead I measure it in lifetimes. ☮️ 🪷
The writeup is ready
(Subdomain Fuzzing worth 35k bounty!)
I tried my best to make everything clear,and useful
Enjoy :)
https://t.co/k8Erzh8dsq
#BugBounty#bugbountytip#bugcrowd
IDORs are lucrative in app testing and the Authorize plugin is really helpful, but I'm going to share my favorite tip that personally gets me the most coverage.
Match and replace, and it's my favorite way to find IDORs. How do I use it?
👇
Understanding how systems work is a competitive advantage as a hacker.
How do you get to this point?
Build.
Code a complex, modern application that relies on:
-> a database
-> caching/memory-store (redis)
-> message broker (rabbitmq)
etc.
Deploy it.
#typefully
🚀Join us as we complete @cyberdefenders RE101
📚6 Challenges for Beginner Malware Analysts
🔍Extracting Encrypted Flags
🔓Decoding in CyberChef
🔧Fixing file headers
🔎Used a debugger to find a flag
🔐Xor Encrypted Strings
🔗https://t.co/PYoIztXPPJ
🥇 FREE Certified AppSec Practitioner (CAP) exam! 🥇
** No Discount Code Needed**
To get the offer:
1. Retweet this post.
2. Fill this Google form -
📄 https://t.co/WVFmLaO3CZ
3. We will email you the exam details. 💯
🔗 Read more about our CAP exam -
https://t.co/iW47bEhG0s
#pentesting #CAPExam #Applicationsecurity #informationsecurity
🔐Secrets no one will share with you - Here's a technique that might grant you access to takeover other users' accounts using "Login with Facebook":
Are you working on a target site that supports "Login with Facebook"?
Disable email sharing during Facebook login and be ready for unusual design flows that could enable you to take over other users' accounts.
Here's how to disable email sharing when using "Login with Facebook":
1️⃣ Log in with Facebook on any app.
2️⃣ Click "Edit Access."
3️⃣ Uncheck the email address checkbox.
4️⃣ Click Continue.
Here are some scenarios of account takeovers I've reported based on different target app behaviors:
Account Takeover via Linking Facebook Flow:
1️⃣ Went to http://example[.]com, used "Login with Facebook" (Uncheck share email on Facebook).
2️⃣ The target site asked to enter an email to link my FB account as no email was shared from FB. Entered [email protected], a confirmation link was sent to the victim's email to bind the account.
3️⃣ Repeated the same steps on the target site using the same FB account, this time choose to link [email protected] on target site – received the same link as step (2) on the attacker controlled email!
4️⃣ Knowing this, repeated the same steps again to link [email protected], and used earlier link which was received on [email protected] to takeover [email protected] account.
Direct Account Takeover via Login with Facebook:
1️⃣ Went to http://example[.]com, used "Login with Facebook" (Uncheck share email on Facebook).
2️⃣ The target site prompted me to enter an email to link the FB account to an existing account since no email was shared from FB. Entered [email protected]. It directly logged me into [email protected] without any further verification, leading to a complete account takeover.
Pre-Account Takeovers:
Do you have a target app that heavily relies on a user's email domain to grant access to organizations or critical features based on whitelisted domains? Using this technique can help you bypass email verification requirements, allowing you to claim any email. Consequently, you may be able to access critical features of other organizations permitted for emails with the same domain.
Lesson: Always test unusual login flows by logging in with a 3rd party provider without sharing email with the target site. These designs can be flawed and lead to nice bounties! 💰 #BugBounty #CyberSecurity #HackerOne #bugcrowd #securitytips #bugbountytips
The fact that they developed a complete zero-click to kernel chain, JUST to then force the device to open a web page to trigger the "real" chain, is the most bureaucratic exploit I can imagine 🙈
https://t.co/ZCZqQfRUoE
⚡Embedded Systems Engineering Roadmap (v1.2.0)
An update easier to read and more practical. More details, along with learning resources, are available here:
https://t.co/Xc6R4zS76x
LogoFAIL es una vulnerabilidad crítica en la interfaz de firmware unificada extensible (UEFI) que afecta a dispositivos x86 y ARM, incluyendo marcas como Intel, Acer y Lenovo.
El problema se origina en bibliotecas de análisis de imágenes durante el arranque, permite a los atacantes inyectar imágenes de logotipos maliciosas para ejecutar cargas útiles y eludir mecanismos de seguridad como Secure Boot e Intel Boot Guard.
Descubierta por Binarly, esta vulnerabilidad no altera la integridad en tiempo de ejecución pero compromete profundamente la seguridad del sistema. Los proveedores afectados han emitido avisos y la mitigación efectiva incluye la actualización de firmware y la configuración de múltiples capas de defensas en UEFI para más información visita (https://t.co/PT0oYHXTGS)