HK
Heykuki News
Top
New
Best
Ask
Show
Jobs
Toggle theme
Top
New
Best
Ask
Show
Jobs
Request
121.
▲
HTTP/1.1 must die: the desync endgame
portswigger.net
discuss
a year ago
jsnell
3 points
122.
▲
Top web hacking techniques of 2024
portswigger.net
discuss
a year ago
chillax
3 points
123.
▲
Listen to the whispers: web timing attacks that work
portswigger.net
discuss
2 years ago
chillax
3 points
124.
▲
uBlock, I exfiltrate: exploiting ad blockers with CSS (2021)
portswigger.net
discuss
2 years ago
ReadCarlBarks
3 points
125.
▲
Indian transport ministry flaws potentially allowed creation of counterfeit
portswigger.net
discuss
3 years ago
feross
3 points
126.
▲
Password managers: A rough guide to enterprise secret platforms
portswigger.net
discuss
3 years ago
feross
3 points
127.
▲
Cisco ClamAV anti-malware scanner vulnerable to serious security flaw
portswigger.net
discuss
3 years ago
feross
3 points
128.
▲
Portswigger's top web hacking techniques of 2022
portswigger.net
discuss
3 years ago
arunsivadasan
3 points
129.
▲
AWS patches bypass bug in CloudTrail API monitoring tool
portswigger.net
discuss
3 years ago
feross
3 points
130.
▲
New tool protects against vulnerabilities in popular file converter ImageMagick
portswigger.net
discuss
3 years ago
feross
3 points
131.
▲
Urlscan.io API unwittingly leaks sensitive URLs, data
portswigger.net
discuss
4 years ago
feross
3 points
132.
▲
The latest bug bounty programs for November 2022
portswigger.net
discuss
4 years ago
Amorymeltzer
3 points
133.
▲
Login spoofing issue in GitHub nets researcher $10k bug bounty reward
portswigger.net
discuss
4 years ago
feross
3 points
134.
▲
Security certification body (ISC)² defends ‘undemocratic’ bylaw changes
portswigger.net
discuss
4 years ago
feross
3 points
135.
▲
Patching common vulnerabilities at scale: project promises bulk pull requests
portswigger.net
discuss
4 years ago
feross
3 points
136.
▲
The seventh way to call a JavaScript function without parentheses
portswigger.net
discuss
4 years ago
kiyanwang
3 points
137.
▲
Graph-based JavaScript bug scanner discovers more than 100 zero-day
portswigger.net
discuss
4 years ago
feross
3 points
138.
▲
Swiss Post relaunches e-voting bug bounty program
portswigger.net
discuss
4 years ago
feross
3 points
139.
▲
Healthcare provider Novant issues data breach warning after site tracking pixels
portswigger.net
discuss
4 years ago
feross
3 points
140.
▲
Browser-Powered Desync Attacks: A New Frontier in HTTP Request Smuggling
portswigger.net
discuss
4 years ago
todsacerdoti
3 points
141.
▲
Jenkins security: Unpatched XSS, CSRF bugs included in latest plugin advisory
portswigger.net
discuss
4 years ago
feross
3 points
142.
▲
Bypassing Firefox's HTML Sanitizer API
portswigger.net
discuss
4 years ago
psydvl
3 points
143.
▲
Reddit patches CSRF vulnerability that forced users to view NSFW content
portswigger.net
discuss
4 years ago
feross
3 points
144.
▲
Indian VPN providers resist incoming data-logging law
portswigger.net
discuss
4 years ago
feross
3 points
145.
▲
Bug Bounty Radar // The latest bug bounty programs for June 2022
portswigger.net
discuss
4 years ago
feross
3 points
146.
▲
Pwn2Own Vancouver: 15th annual hacking event pays out $1.2m for high-impact
portswigger.net
discuss
4 years ago
feross
3 points
147.
▲
RuTube hack: Russian video platform denies loss of source code following
portswigger.net
discuss
4 years ago
feross
3 points
148.
▲
Unpatched plugins threaten millions of WordPress websites
portswigger.net
discuss
4 years ago
feross
3 points
149.
▲
Prison service for England and Wales recorded more than 2k data breaches over
portswigger.net
discuss
4 years ago
feross
3 points
150.
▲
Exploit chain allows security researchers to pwn phone system
portswigger.net
discuss
4 years ago
carride
3 points
More