Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Techbrunch
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
Wp2shell Pre Authentication RCE in WordPress Core
(wp2shell.com)
6 points
by
Techbrunch
2mo ago
|
2 comments
2.
▲
Protecting Cookies with Device Bound Session Credentials
(security.googleblog.com)
3 points
by
Techbrunch
5mo ago
|
0 comments
3.
▲
Mercari's Phishing-Resistant Accounts with Passkey
(engineering.mercari.com)
1 points
by
Techbrunch
7mo ago
|
0 comments
4.
▲
Claude is competitive with humans in (some) cyber competitions
(red.anthropic.com)
1 points
by
Techbrunch
1y ago
|
0 comments
5.
▲
by
Techbrunch
2y ago
Depending on the target and the severity of the vulnerability the vendor might consider fixing the vulnerability even if EOL. If the target is an IOT device the vulnerability will likely be mass exploited to create a botnet. The U.S. govern
6.
▲
by
Techbrunch
2y ago
"Although the term "zero-day" initially referred to the time since the vendor had become aware of the vulnerability, zero-day vulnerabilities can also be defined as the subset of vulnerabilities for which no patch or other fi
7.
▲
by
Techbrunch
2y ago
I found that Anthony Fu's QR Toolkit is a great alternative: https://qrcode.antfu.me/
8.
▲
SSO Tax – Wall of Shame
(ssotax.org)
3 points
by
Techbrunch
3y ago
|
0 comments
9.
▲
by
Techbrunch
3y ago
Is there a ublock origin list that can be used to filter those websites ?
10.
▲
by
Techbrunch
3y ago
It is but it was proofread by a human with expertise in the domain, and honestly I wouldn't have done better in such a short amount of words. If someone wants to know more they better read the article which I did to make sure the gener
11.
▲
by
Techbrunch
3y ago
Martin Vigo's article discusses the security vulnerabilities in password reset options for various websites and how these can lead to the exposure of personal phone numbers. Vigo highlights that during a password reset process, website
12.
▲
How AWS threat intelligence deters threat actors
(aws.amazon.com)
1 points
by
Techbrunch
3y ago
|
0 comments
13.
▲
Hacking the Largest Airline and Hotel Rewards Platform
(samcurry.net)
4 points
by
Techbrunch
3y ago
|
0 comments
14.
▲
HackerOne lays off 12% of its workforce
(hackerone.com)
67 points
by
Techbrunch
3y ago
|
106 comments
15.
▲
Cascade of Duty – Cod Using HTML and CSS Only
(garethheyes.co.uk)
2 points
by
Techbrunch
3y ago
|
0 comments
16.
▲
OrbStack Public Beta – A New Way to Run Docker and Linux on macOS
(twitter.com)
11 points
by
Techbrunch
3y ago
|
6 comments
17.
▲
Disinfo black ops: exposing the companies and states spreading false information
(theguardian.com)
7 points
by
Techbrunch
4y ago
|
0 comments
18.
▲
by
Techbrunch
4y ago
I came to say the same thing ^^ Check: https://galactic.run/ for a web implementation :)
19.
▲
I made Minecraft in Minecraft with redstone
(youtube.com)
4 points
by
Techbrunch
4y ago
|
0 comments
20.
▲
Blog Support for Material for MkDocs
(twitter.com)
6 points
by
Techbrunch
4y ago
|
0 comments
21.
▲
Browser-Powered Desync Attacks: A New Frontier in HTTP Request Smuggling
(portswigger.net)
4 points
by
Techbrunch
4y ago
|
0 comments
22.
▲
I Built Starry Night in Minecraft
(youtube.com)
2 points
by
Techbrunch
4y ago
|
0 comments
23.
▲
by
Techbrunch
4y ago
“using advanced cloud-specific knowledge to exploit complex cloud infrastructure" = Checking if an environment variable is set
24.
▲
by
Techbrunch
5y ago
If you are using an up to date version of Firefox, Edge or Chrome it defaults to Lax. The exceptions are Safari, IE and Safari for IOS. I don't think this is worth a 8.1 CVSS. Source: https://developer.mozilla.org/en-US
25.
▲
by
Techbrunch
5y ago
How to solve why the server crashed using the 5 Whys: https://vooza.com/videos/the-5-whys/
26.
▲
by
Techbrunch
5y ago
I would not recommend OSWE to learn appsec since it is teaching "Advanced Web Attacks" and assume that you know the basics. Something that is really interesting I think is the whitebox approach that some people in infosec might be
27.
▲
by
Techbrunch
5y ago
An example would be to be able to read source code in different languages (Java, PHP, JavaScript, C#) and be able to identify, chain vulnerabilities and write an exploit script to automate everything. You can find the syllabus here: https:
28.
▲
RailsConf 2021 videos now available
(youtube.com)
2 points
by
Techbrunch
5y ago
|
1 comments
29.
▲
Bringing Online Gaming to the Game Boy
(youtube.com)
5 points
by
Techbrunch
5y ago
|
1 comments
30.
▲
by
Techbrunch
5y ago
Similar issues: - Hacking 3,000,000 apps at once through CocoaPods - https://justi.cz/security/2021/04/20/cocoapods-rce.html - Remote code execution in Homebrew by compromising the official Cask reposito
More ›