- [Bug Bounty] Blockchain.com exchange 2fa could be turned off without reauthenticating. HackerOne.com claimed that's how it was supposed to work, but Blockchain.com fixed it. I was refused a bug bounty and then later offered $50 since "I tried" but they wanted my social security number first.
- Extracting the decrypted flash data from a fully protected ESP32 chip using chip-level weaknesses, no knowledge of the decryption key and a single glitch (CVE-2020-13629).
- CrowdSec, an open-source, modernized & collaborative fail2ban
- Exploiting Tiny Tiny RSS
- IEEE 802.11 Frames and How to Get Them
- r2-pay: anti-debug, anti-root & anti-frida (part 1) | Romain Thomas
- New writeup on Hadoop + MCollective exploitation! - @securfreakazoid
- A Survey of Public DNS over HTTPS Servers
- suPHP - The vulnerable ghost in your shell - vulnerable.af
Posted: 22 Sep 2020 01:23 PM PDT |
Posted: 22 Sep 2020 12:13 AM PDT |
CrowdSec, an open-source, modernized & collaborative fail2ban Posted: 22 Sep 2020 07:33 AM PDT |
Posted: 22 Sep 2020 10:11 AM PDT |
IEEE 802.11 Frames and How to Get Them Posted: 22 Sep 2020 06:34 AM PDT |
r2-pay: anti-debug, anti-root & anti-frida (part 1) | Romain Thomas Posted: 22 Sep 2020 05:38 AM PDT |
New writeup on Hadoop + MCollective exploitation! - @securfreakazoid Posted: 22 Sep 2020 10:46 AM PDT |
A Survey of Public DNS over HTTPS Servers Posted: 22 Sep 2020 08:10 AM PDT |
suPHP - The vulnerable ghost in your shell - vulnerable.af Posted: 21 Sep 2020 12:27 PM PDT |
You are subscribed to email updates from /r/netsec - Information Security News & Discussion. To stop receiving these emails, you may unsubscribe now. | Email delivery powered by Google |
Google, 1600 Amphitheatre Parkway, Mountain View, CA 94043, United States |
No comments:
Post a Comment