Trending

#WebSec

Latest posts tagged with #WebSec on Bluesky

Latest Top
Trending

Posts tagged #WebSec

Preview
GitHub - FelSec/n1qlscan: N1QLScan - N1QL injection tool N1QLScan - N1QL injection tool. Contribute to FelSec/n1qlscan development by creating an account on GitHub.

N1QLScan v1.0.0 released!

Automate the detection and exploitation of N1QL injection vulnerabilities.

Get it here: github.com/FelSec/n1qls...

#n1ql #couchbase #websec #infosec

0 0 0 0
A screenshot of C3S Blog's latest article

A screenshot of C3S Blog's latest article

Check out our latest post on C3S Blog! 🖥

An article about protecting your company from #cybersecurity related threats 🤖

Here ➡️ www.cerbere3s.com/blog/read/cy...

#startup #businessowner #website #websec #appsec #AI

0 0 0 0
a woman looking at a desktop with a login page that says "cyber security"

a woman looking at a desktop with a login page that says "cyber security"

We believe the hardest part of web vulnerability scanning isn't detection, it's making results visible. 🧐

That's why we built a scanner focused on producing understandable, clear and actionnable reports. 😎

cerbere3s.com

#Cybersecurity #Website #Websec #Hacking

1 0 0 0
illustration of a circuitboard

illustration of a circuitboard

Most scanners: 87 tabs, 400 findings, 0 clarity.

Ours: a fun, simple scan that tells you what matters and what to do next ⚡️

Less noise. More fixes. ✅

#Cybersecurity made simple

cerbere3s.com

#Vulnerabilityscanning #scanner #websec #appsec

0 0 0 0

One bug can change your whole week. stay in the hunt. #websec #bugbounty

0 0 0 0
Preview
Ultimate Bug Bounty Full Course 2025 - Hunt Security Flaws & Earn Like a Hacker - Learn Bug Bounty #Ultimate_Bug Bounty_Full_Course_2025 #Hunt_Security_Flaws_&_Earn_Like_a_Hacker #Learn_Bug_Bounty Become a Successful Bug Bounty Hunter — Start Earning in 2024 Want to break into bug bounty hunti...

Ultimate Bug Bounty Full Course 2025 - Hunt Security Flaws & Earn Like a Hacker - Learn Bug Bounty
twuai.com/fp/UCaXkG09M...
#bugbounty #bughunters #hacking #xss #SQLi #websec #cybersec #ethicalhacking #whitehat #halloffame

0 0 0 0
Preview
Cloudflare XSS Bypass PoC — How I Broke Their Filter (Critical!) 🔍 Excited to share my latest findings on Cross-Site Scripting (XSS) bypass techniques against Cloudflare-protected platforms. In this post, I highlight: 1️⃣ How attackers can bypass Web Application Fi...

Cloudflare XSS Bypass PoC — How I Broke Their Filter (Critical!)
twuai.com/search/8eWcd...
#websec #xss #waf #bypass #vulnerability #exploit #cybersecurity #pentesting

1 0 0 0

TIL As soon as you resp. your nameserver publish a new domain to DNS, the bots are coming. Immediately! Scanning for accessible configs etc. So you better not have a misconfigured webserver running for dev purposes. Never assume: No one knows the domain. #crowdsec #websec

1 0 0 0
0.CL The story of solving the 0.CL lab of the PortSwigger Web Security Academy

I wrote a post on my personal blog giving a solution to the 0.CL lab together with the the experience I had. An opportunity to say thank you to @albinowax.bsky.social and to @portswigger.net for the great research and for the fun in the academy!
#websec
poeticalhacking.net/blog/posts/0...

1 0 0 0
Post image

Currently figuring out how to lure some internet weirdos in for the ride of a lifetime lol.

You catch a couple and it's like, Woah.

#CyberSecurity #OSINT #BotDetection #Cloudflare #Firebase #DigitalForensics #Honeypot #WebSec

1 0 0 0
Original post on norden.social

Have you noticed the user agent ‘Mozilla/5.0 (X11; Linux x86_64; rv:109.0) Gecko/20100101 Firefox/118.0’ in your log files? Thousands of such requests come in from 25 servers at a German provider. They look like search queries on the website as if using a form, but all quite pointless.

This has […]

1 4 1 0
Preview
Popular npm linter packages hijacked via phishing to drop malware Popular JavaScript libraries eslint-config-prettier and eslint-plugin-prettier were hijacked this week and turned into malware droppers, in a supply chain attack achieved via targeted phishing and cre...

Last week, popular npm linter packages like eslint-config-prettier and eslint-plugin-prettier were hijacked. The compromised versions deployed malware via postinstall scripts, enabling remote control on Windows. Make sure you audit! www.bleepingcomputer.com/news/securit...

#npm #JavaScript #WebSec

1 0 0 0
N1QL Injection - Part 1 A brief introduction into N1QL and N1QL injection.

Check out my blog post digging into NoSQL attacks with Couchbase’s N1QL query language.
Learn how to spot and exploit N1QL injection vulnerabilities.

felsec.com/posts/n1qlin...

#infosec #bugbounty #websec #n1ql #couchbase #securityresearch

0 0 0 0
Preview
Google Cloud and Cloudflare hit by widespread service outages Google Cloud and Cloudflare are investigating ongoing outages impacting access to sites and various services across multiple regions.

Google Cloud and Cloudflare hit by widespread service outages💣💥

#GoogleCloud and #Cloudflare are investigating ongoing outages impacting access to sites and various services across multiple regions...🔥🛜💥

#news #TechNews #cybersecuritynews #Friday #websec

www.bleepingcomputer.com/news/technol...

2 0 0 0
Preview
Burp Suite Tutorial | BurpSuite Basics | Burp Suite For Beginners | Bug Bounty For Beginners - Buscar con Twuai La informacion relevante sobre Burp Suite Tutorial | BurpSuite Basics | Burp Suite For Beginners | Bug Bounty For Beginners y mucho mas la encuentras en twuai.com

Burp Suite Tutorial | BurpSuite Basics | Burp Suite For Beginners | Bug Bounty For Beginners twuai.com/search/Burp%... 2twu.com/post/7500236...
#websec #cybersecurity #burp #webproxy #MiTM #networkingsecurity #pentesting #kali #linux #hacking #tutorial #bugbounty #CTF #tools

0 0 0 0
Post image

another one completed. figured out that I need to improve my Python skills tho :D
Priviledge escalation was easier than the initial foothold. Overall a nice CTF
#hacking #hackthebox #itsec #websec

1 0 0 0
Post image

A couple of days ago I got another pwn on #hackthebox
Slowly but steady I get a process set up in identifying vulnerabilities.

#hacking #itsec #websec #ethicalhacking

0 0 0 0
Preview
Owned Titanic from Hack The Box! I have just owned machine Titanic from Hack The Box

Finally got my first (non-retired) Machine Pwned :)

#hacking #htb #itsec #websec #ethicalhacking

www.hackthebox.com/achievement/...

1 0 0 0
Post image

And people still think that AI will replace programmers...
I fear that the amount of vulnerable websites will explode.
#itsec #hacking #websec #ai

0 0 0 0
Post image

Finaly completed the Bug Bounty Hunter on #hackthebox
Took me far longer than expected. Okay... because I was a lazy fuck :D
However, a great path which I really enjoyed!

#hacking #itsec #websec

1 0 0 0
Preview
Completed Session Security Maintaining and keeping track of a user's session is an integral part of web applications. It is an area that requires extensive testing to ensure it is set up robustly and securely. This module cover...

Anotherr module completed.
Definetly one of the easyier modules on Hack The Box but surely not less entertaining.
Reminds me of checking my own web apps for Session vulnerabilites :D

#websec #itsec #hacking

academy.hackthebox.com/achievement/...

0 0 0 0
Post image

why is this so cool?
fedisecfeeds.github.io/

Fedi Sec Feeds
#infosec #websec #geekalert

0 0 0 0
MADWeb 2025

🚨 Deadline Extended 🚨

By popular demand, the #MADWeb submission deadline is now January 14, 2025 (AoE)! 🗓️

You still have 1 week to send your papers and join us in San Diego!

📜 Submit here: madweb25.hotcrp.com
🔗 Details: madweb.work

Spread the word!

#websec #cfp #ndss

2 1 0 1
webscan.dev | Comprehensive Web Security Scanner Free instant security analysis for your website. Check headers, evaluate security posture, and get actionable recommendations.

🛡️ Security Scanner for Web Applications
🔒 Privacy-First Security Analysis 👩‍💻 Built by Developers, for Developers

Try it now: webscan.dev

#SecurityTools #WebSec #DAST

0 0 0 0
Preview
Completed Web Attacks This module covers three common web vulnerabilities, HTTP Verb Tampering, IDOR, and XXE, each of which can have a significant impact on a company's systems. We will cover how to identify, exploit, and...

Just completed the "Web Attacks" module on Hack The Box. This was a really fun one. Skill assessment wasn't too hard, but still a nice challenge.
Next module: Session Security

#htb #hacking #itsec #websec #ethicalhacking

academy.hackthebox.com/achievement/...

0 0 0 0
Preview
Don’t Click Twice—New Chrome, Edge, Safari Hack Attack Warning As a new hack attack has been identified, all web browser users are warned—don’t click twice. Here’s what you need to know.

When you think Click-jacking is a relic of the past, someone comes up with double-click-jacking

Take care guys where you double click.

#itsec #websec #itsecurity #hacking

www.forbes.com/sites/daveyw...

0 0 0 0
<iframe id="testframe" src="about:blank"
    sandbox="allow-pointer-lock allow-orientation-lock allow-scripts"
    allow="accelerometer ambient-light-sensor autoplay fullscreen gamepad gyroscope magnetometer screen-wake-lock web-share"></iframe>

<iframe id="testframe" src="about:blank" sandbox="allow-pointer-lock allow-orientation-lock allow-scripts" allow="accelerometer ambient-light-sensor autoplay fullscreen gamepad gyroscope magnetometer screen-wake-lock web-share"></iframe>

any browser security people, are there any known ways for an iframe like this to explode in an unpleasant manner (beyond locking up the browser with an infinite loop i guess)

have an idea that requires sandboxed iframes and dont want to fuck it up

#webDev #webSec #infoSec

0 1 1 0

Help us make this year's edition of #MADWeb the best one yet!

📅 Deadline: January 9, 2025 (AoE)
📜 Submit here: madweb25.hotcrp.com
🔗 Website: madweb.work

#CfP #websec #websecurity

3 0 0 0
MADWeb 2025

Only 10 days left to submit your papers to #MADWeb and secure a spot to present your work in the sunny San Diego!

📅 Deadline: January 9, 2025 (AoE)
📜 Submit here: madweb25.hotcrp.com
🔗 Website: madweb.work

#CfP #websec

2 1 0 1
Preview
Operation Tinsel Trace II: Join the resistance against Krampus! Krampus has left some gifts for Santa, it turns out—it’s malware. Use your holiday spirit to hone in and eliminate the threat.

Join The Challenge!
#itsec #hacking #websec #itsecurity

www.hackthebox.com/blog/operati...

1 0 0 0