We've updated the nomination list with 14 new entries from the community - keep them coming!
We've updated the nomination list with 14 new entries from the community - keep them coming!
I've just released HTTP Request Smuggler 2.17 which fixes a nasty Client-Side Desync false-negative. Big thanks to @t0xodile.com for reporting it! Hope you all find some nice CSDs in 2025 :)
ุงูุณูุงุณุฉ ุชุชุทูุจ ูุฑ ููุฑ ูุงุฑุฏูุบุงู ูุฌูุฏ ุงููุฑ ูุงููุฑ.
ุงูุฏูุชูุฑ ุณูู ุนุจุฏ ุงููุชุงุญ
ุจู
ูุนู ุงู ูู ุฑุฌู ุณูุงุณุฉ ูููู ููุณ ุฑุฌู ุงู
ุฉ
๐ฆข Proud to share my 2024 #HackerOne journey! 27 verified reports, including 3 critical findings and 9 high-severity vulnerabilities. Special thanks to @Hacker0x01 for providing the platform where this Swan can spread their wings! ๐ #InfoSec #BugBounty #CyberSecurity hackerone.com/stories-of-2...
Twitter broke their link shortening service because they refused to pay a few hundred dollars for a bug bounty, and instead put all their users at risk. But tech reporting on the outage completely omits the security issue.
The decimation of technology journalism is a disaster for us all.