N1QLScan v1.0.0 released!
Automate the detection and exploitation of N1QL injection vulnerabilities.
Get it here: github.com/FelSec/n1qls...
#n1ql #couchbase #websec #infosec
Latest posts tagged with #WebSec on Bluesky
N1QLScan v1.0.0 released!
Automate the detection and exploitation of N1QL injection vulnerabilities.
Get it here: github.com/FelSec/n1qls...
#n1ql #couchbase #websec #infosec
A screenshot of C3S Blog's latest article
Check out our latest post on C3S Blog! 🖥
An article about protecting your company from #cybersecurity related threats 🤖
Here ➡️ www.cerbere3s.com/blog/read/cy...
#startup #businessowner #website #websec #appsec #AI
a woman looking at a desktop with a login page that says "cyber security"
We believe the hardest part of web vulnerability scanning isn't detection, it's making results visible. 🧐
That's why we built a scanner focused on producing understandable, clear and actionnable reports. 😎
cerbere3s.com
#Cybersecurity #Website #Websec #Hacking
illustration of a circuitboard
Most scanners: 87 tabs, 400 findings, 0 clarity.
Ours: a fun, simple scan that tells you what matters and what to do next ⚡️
Less noise. More fixes. ✅
#Cybersecurity made simple
cerbere3s.com
#Vulnerabilityscanning #scanner #websec #appsec
One bug can change your whole week. stay in the hunt. #websec #bugbounty
Ultimate Bug Bounty Full Course 2025 - Hunt Security Flaws & Earn Like a Hacker - Learn Bug Bounty
twuai.com/fp/UCaXkG09M...
#bugbounty #bughunters #hacking #xss #SQLi #websec #cybersec #ethicalhacking #whitehat #halloffame
Cloudflare XSS Bypass PoC — How I Broke Their Filter (Critical!)
twuai.com/search/8eWcd...
#websec #xss #waf #bypass #vulnerability #exploit #cybersecurity #pentesting
TIL As soon as you resp. your nameserver publish a new domain to DNS, the bots are coming. Immediately! Scanning for accessible configs etc. So you better not have a misconfigured webserver running for dev purposes. Never assume: No one knows the domain. #crowdsec #websec
I wrote a post on my personal blog giving a solution to the 0.CL lab together with the the experience I had. An opportunity to say thank you to @albinowax.bsky.social and to @portswigger.net for the great research and for the fun in the academy!
#websec
poeticalhacking.net/blog/posts/0...
Currently figuring out how to lure some internet weirdos in for the ride of a lifetime lol.
You catch a couple and it's like, Woah.
#CyberSecurity #OSINT #BotDetection #Cloudflare #Firebase #DigitalForensics #Honeypot #WebSec
Have you noticed the user agent ‘Mozilla/5.0 (X11; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/118.0’ in your log files? Thousands of such requests come in from 25 servers at a German provider. They look like search queries on the website as if using a form, but all quite pointless.
This has […]
Last week, popular npm linter packages like eslint-config-prettier and eslint-plugin-prettier were hijacked. The compromised versions deployed malware via postinstall scripts, enabling remote control on Windows. Make sure you audit! www.bleepingcomputer.com/news/securit...
#npm #JavaScript #WebSec
Check out my blog post digging into NoSQL attacks with Couchbase’s N1QL query language.
Learn how to spot and exploit N1QL injection vulnerabilities.
felsec.com/posts/n1qlin...
#infosec #bugbounty #websec #n1ql #couchbase #securityresearch
Google Cloud and Cloudflare hit by widespread service outages💣💥
#GoogleCloud and #Cloudflare are investigating ongoing outages impacting access to sites and various services across multiple regions...🔥🛜💥
#news #TechNews #cybersecuritynews #Friday #websec
www.bleepingcomputer.com/news/technol...
Burp Suite Tutorial | BurpSuite Basics | Burp Suite For Beginners | Bug Bounty For Beginners twuai.com/search/Burp%... 2twu.com/post/7500236...
#websec #cybersecurity #burp #webproxy #MiTM #networkingsecurity #pentesting #kali #linux #hacking #tutorial #bugbounty #CTF #tools
another one completed. figured out that I need to improve my Python skills tho :D
Priviledge escalation was easier than the initial foothold. Overall a nice CTF
#hacking #hackthebox #itsec #websec
A couple of days ago I got another pwn on #hackthebox
Slowly but steady I get a process set up in identifying vulnerabilities.
#hacking #itsec #websec #ethicalhacking
Finally got my first (non-retired) Machine Pwned :)
#hacking #htb #itsec #websec #ethicalhacking
www.hackthebox.com/achievement/...
And people still think that AI will replace programmers...
I fear that the amount of vulnerable websites will explode.
#itsec #hacking #websec #ai
Finaly completed the Bug Bounty Hunter on #hackthebox
Took me far longer than expected. Okay... because I was a lazy fuck :D
However, a great path which I really enjoyed!
#hacking #itsec #websec
Anotherr module completed.
Definetly one of the easyier modules on Hack The Box but surely not less entertaining.
Reminds me of checking my own web apps for Session vulnerabilites :D
#websec #itsec #hacking
academy.hackthebox.com/achievement/...
why is this so cool?
fedisecfeeds.github.io/
Fedi Sec Feeds
#infosec #websec #geekalert
🚨 Deadline Extended 🚨
By popular demand, the #MADWeb submission deadline is now January 14, 2025 (AoE)! 🗓️
You still have 1 week to send your papers and join us in San Diego!
📜 Submit here: madweb25.hotcrp.com
🔗 Details: madweb.work
Spread the word!
#websec #cfp #ndss
🛡️ Security Scanner for Web Applications
🔒 Privacy-First Security Analysis 👩💻 Built by Developers, for Developers
Try it now: webscan.dev
#SecurityTools #WebSec #DAST
Just completed the "Web Attacks" module on Hack The Box. This was a really fun one. Skill assessment wasn't too hard, but still a nice challenge.
Next module: Session Security
#htb #hacking #itsec #websec #ethicalhacking
academy.hackthebox.com/achievement/...
When you think Click-jacking is a relic of the past, someone comes up with double-click-jacking
Take care guys where you double click.
#itsec #websec #itsecurity #hacking
www.forbes.com/sites/daveyw...
<iframe id="testframe" src="about:blank" sandbox="allow-pointer-lock allow-orientation-lock allow-scripts" allow="accelerometer ambient-light-sensor autoplay fullscreen gamepad gyroscope magnetometer screen-wake-lock web-share"></iframe>
any browser security people, are there any known ways for an iframe like this to explode in an unpleasant manner (beyond locking up the browser with an infinite loop i guess)
have an idea that requires sandboxed iframes and dont want to fuck it up
#webDev #webSec #infoSec
Help us make this year's edition of #MADWeb the best one yet!
📅 Deadline: January 9, 2025 (AoE)
📜 Submit here: madweb25.hotcrp.com
🔗 Website: madweb.work
#CfP #websec #websecurity
Only 10 days left to submit your papers to #MADWeb and secure a spot to present your work in the sunny San Diego!
📅 Deadline: January 9, 2025 (AoE)
📜 Submit here: madweb25.hotcrp.com
🔗 Website: madweb.work
#CfP #websec
Join The Challenge!
#itsec #hacking #websec #itsecurity
www.hackthebox.com/blog/operati...