Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
0xcrypto
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
1.
▲
Show HN: Ivx/AI Chat, AI client that doesn't track you (with a better GUI imo)
(ai.ivx.run)
1 points
by
0xcrypto
1d ago
|
0 comments
2.
▲
Musk Is Running a Fake Voter Registration Site Designed to Steal and Sell Data
(yahoo.com)
38 points
by
0xcrypto
3d ago
|
7 comments
3.
▲
Leaking internal headers in Flask Ninja with deserialization
(eval.blog)
1 points
by
0xcrypto
2mo ago
|
0 comments
4.
▲
by
0xcrypto
2mo ago
A question, how are you or anyone else doing this is registering bundle identifiers without opening xcode?
5.
▲
Th0rgal/open_oura: a Rust toolkit for the Oura Ring (Gen 3/4/5)
(github.com)
3 points
by
0xcrypto
3mo ago
|
1 comments
6.
▲
Is Cybersecurity Over? [video]
(youtube.com)
5 points
by
0xcrypto
5mo ago
|
0 comments
7.
▲
by
0xcrypto
8mo ago
Fewer CVEs do not necessarily mean safety.
8.
▲
Simple Prompts to Get the System Prompts
(eval.blog)
4 points
by
0xcrypto
2y ago
|
0 comments
9.
▲
How THM Delhi Stole the Work of a Student
(h00dy.medium.com)
1 points
by
0xcrypto
2y ago
|
0 comments
10.
▲
by
0xcrypto
2y ago
My only concern with such articles is the use of "god" and "religion" which only gives the majority of humanity a reason to pray more and kill anyone who disagrees. Conscious or not, why can't we just continue calli
11.
▲
by
0xcrypto
3y ago
Agree with this. I tried to create objective C files in xcode 15.2 many times, spent days thinking I must have messed up somewhere and finally I found this https://forums.developer.apple.com/forums/thread/743032 .
12.
▲
Utilizing unit testing frameworks as a vulnerability scanner – eval.blog
(eval.blog)
2 points
by
0xcrypto
3y ago
|
0 comments
13.
▲
by
0xcrypto
3y ago
You are right that redirect_uri must match the exact registered redirect_uri. But some providers allow query parameters. For Microsoft, it was possible in 2020 when I reported the vulnerability. In 2022, they restricted query parameter supp
14.
▲
by
0xcrypto
3y ago
Well mistakes happen. One thing that is still not explained is that I contacted Hackerone many times in the timespan of 3 years but they couldn't get in contact with you either. Also, it is still unclear how you wanna continue with the
15.
▲
by
0xcrypto
3y ago
Author of the blog post here. Yes, I agree that it wasn't Hackerone's fault and they tried their best to help. As for the violation of agreement with hackerone, I have read the policy many times before publishing the article and e
16.
▲
by
0xcrypto
3y ago
Oh yes, that sounds better. I am changing the title now. Updated to "Stealing OAuth tokens of connected Microsoft accounts via open redirect in Harvest App"
17.
▲
by
0xcrypto
3y ago
Hi, author of the blog post here. Yes I understand your concern and I tried keeping Microsoft's name out of the title but couldn't think of anything else. Since the vulnerability only affects the oauth implementation for the conne
18.
▲
Bits Pilani Announces Doctoral Program Focused on Building Deep Tech Startups
(thequantuminsider.com)
1 points
by
0xcrypto
3y ago
|
0 comments
19.
▲
Pulumi – Universal Infrastructure as Code
(pulumi.com)
2 points
by
0xcrypto
3y ago
|
0 comments
20.
▲
Breaking the Mutant Language's “Encryption”
(eval.blog)
1 points
by
0xcrypto
3y ago
|
0 comments
21.
▲
Handshake – Decentralized naming and certificate authority
(handshake.org)
155 points
by
0xcrypto
4y ago
|
95 comments
22.
▲
by
0xcrypto
9y ago
Looks pretty neat.
23.
▲
Noko WordPress Theme
(wordpress.org)
2 points
by
0xcrypto
9y ago
|
0 comments
24.
▲
Is there any PHP to Perl transpiler?
1 points
by
0xcrypto
9y ago
|
0 comments