Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Magicstatic
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
Android Goes All-In on Fuzzing
(security.googleblog.com)
2 points
by
Magicstatic
3y ago
|
0 comments
2.
▲
by
Magicstatic
4y ago
I use Lookify.io which lets you look up a carrier without creating an account - you can also see if anyone else flags it as spammy but who knows if the reports are anything other than anecdotal
3.
▲
by
Magicstatic
4y ago
This is the craziest part of the whole article - imagine you wanted to own something like "555-FOOD" - to have this vanity number work in every area code, you'd be looking at hundreds of thousands of dollars (annually?) if yo
4.
▲
by
Magicstatic
5y ago
Link to company confirming payment: https://twitter.com/josephdelong/status/1431314816698916865 Link to researcher writeup: https://www.paradigm.xyz/2021/08/two-rights-might-make-a-wro...
5.
▲
Security researcher receives $1M bug bounty for saving company from $350M bug
(twitter.com)
53 points
by
Magicstatic
5y ago
|
5 comments
6.
▲
by
Magicstatic
5y ago
This has been refuted and is simply misleading: https://twitter.com/jon_bottarini/status/1428569700859056129
7.
▲
by
Magicstatic
5y ago
Anecdote: Out of every bank and financial institution I have ever tried hacking (ethically, as part of bug bounty programs) Goldman Sachs is hands down, without a doubt, the most secure externally. By a long shot. They have what basically a
8.
▲
by
Magicstatic
5y ago
Many of us including myself are unable to fathom living a life like this, but I imagine this man will die in peace with a flock of sheep to his name, listening to the cuckoos. And he will be just as happy (if not happier) as any of us readi
9.
▲
by
Magicstatic
5y ago
Sincere question - not meant to be inflammatory: Do you actually believe that most employees in the United States are coerced/forced to sign employment contracts, or are you simply playing devil's advocate?
10.
▲
by
Magicstatic
5y ago
My favorite part of this response is in the footnote on page two, which states: >If your client sincerely fears that this depiction is too realistic to be perceived as parody, Krazam’s video should be the least of its reputational concer
11.
▲
EFF's reply to cease-&-desist letter – “Virtual Coachella” parody video
(eff.org)
230 points
by
Magicstatic
5y ago
|
35 comments
12.
▲
by
Magicstatic
6y ago
Is this a security problem? Depends on who you ask - but I'm willing to bet it would fall into the "accepted risk" category for the Facebook security team if they had to evaluate this. The reality is that phone number lookup
13.
▲
City of Tucson, AZ invites remote workers with over $7,500 in benefits
(startuptucson.com)
3 points
by
Magicstatic
6y ago
|
0 comments
14.
▲
by
Magicstatic
6y ago
I don’t even know where to start with this post: - This isn’t even necessarily a hack. At best, this is a mild inconvenience to the user accounts that you are locking out, on what appears to be a legacy system, due to a quasi-brute force. -
15.
▲
by
Magicstatic
7y ago
What’s peculiar about this is that parental restrictions itself on iOS has always been flawed, Apple knew about it, and it’s still an issue to this day. The sole purpose of parental restrictions on iPhone was to block adult websites... and
16.
▲
Gmail conversation between Steve Chen and an early YouTube user (2005)
(imgur.com)
2 points
by
Magicstatic
8y ago
|
0 comments
17.
▲
Ethical hacker makes $120k USD in one week hacking EOS smart contracts
(twitter.com)
25 points
by
Magicstatic
8y ago
|
0 comments
18.
▲
Abusing Internal API to Achieve IDOR in New Relic
(jonbottarini.com)
1 points
by
Magicstatic
9y ago
|
0 comments
19.
▲
by
Magicstatic
9y ago
Was able to reproduce on my machine. macOS High Sierra 10.13 (17A405) This is incredible.
20.
▲
HackerOne passes $18M in bounties paid out to hackers
(twitter.com)
3 points
by
Magicstatic
9y ago
|
0 comments
21.
▲
by
Magicstatic
9y ago
Great website, never heard of it before. Will definitely be using it as a resource in the future!
22.
▲
Google Widevine DRM 2017 Architecture Overview [pdf]
(storage.googleapis.com)
2 points
by
Magicstatic
9y ago
|
0 comments
23.
▲
(SFW) Penetrating Pornhub – Hacking PornHub for $$$ and Tshirts
(jonbottarini.com)
1 points
by
Magicstatic
10y ago
|
0 comments
24.
▲
Bypassing Apple's iOS 10 Parental Restrictions – Twice
(jonbottarini.com)
1 points
by
Magicstatic
10y ago
|
0 comments
25.
▲
by
Magicstatic
10y ago
That was my tweet believe it or not. I had to turn notifications off on my phone because out of nowhere it was getting bombarded with shares/likes...
26.
▲
How does one politely decline a handshake due to religious reasons?
(workplace.stackexchange.com)
2 points
by
Magicstatic
10y ago
|
0 comments
27.
▲
by
Magicstatic
10y ago
As a researcher, I am incredibly, incredibly excited to see H1 grow and more companies come online. I pay a good portion of my rent through bug bounties and I have to admit the gamification and ease of working with H1 makes it fantastic for
28.
▲
by
Magicstatic
10y ago
As with most events that have occurred since Trump took the presidency, I am concerned, but optimistic. She has my full support, I hope she makes great changes to a system that desperately needs it.
29.
▲
by
Magicstatic
10y ago
Pop-ups like that have long been shown to improve conversion rates... at the increase of pissing off people who wouldn't have been a conversion anyway.
30.
▲
by
Magicstatic
10y ago
I usually have them for other projects I am working on - rarely do I purchase a domain just to let it sit there, but that's just me. Not in the market to domain squat... gotta put them to use somehow.
More ›