ch
Feedback
Ayrix Bytes

Ayrix Bytes

前往频道在 Telegram
947
订阅者
+124 小时
-17
+430
帖子存档
🔹 Account Takeover via Signup Feature 📆 Mon, 08 May 2023 20:14:19 GMT #️⃣ #bug_bounty_writeup #bugs #bug_bounty #bug_bounty
🔹 Account Takeover via Signup Feature 📆 Mon, 08 May 2023 20:14:19 GMT #️⃣ #bug_bounty_writeup #bugs #bug_bounty #bug_bounty_tips #bug_fixes

🔹 Sorting Your Way to Stolen Passwords 📆 Mon, 08 May 2023 19:03:30 GMT #️⃣ #bug_bounty #software_development #hacking #pene
🔹 Sorting Your Way to Stolen Passwords 📆 Mon, 08 May 2023 19:03:30 GMT #️⃣ #bug_bounty #software_development #hacking #penetration_testing #cybersecurity

🔹 Оновлення DeGate за квітень 2023 р. 📆 Mon, 08 May 2023 19:09:26 GMT #️⃣ #dex #ethereum #mainnet #degate #bug_bounty
🔹 Оновлення DeGate за квітень 2023 р. 📆 Mon, 08 May 2023 19:09:26 GMT #️⃣ #dex #ethereum #mainnet #degate #bug_bounty

🔹 Bypassing Protocol Concatenation in SSRF: Strategies for Testing Vulnerable Applications 📆 Mon, 08 May 2023 19:29:41 GMT
🔹 Bypassing Protocol Concatenation in SSRF: Strategies for Testing Vulnerable Applications 📆 Mon, 08 May 2023 19:29:41 GMT #️⃣ #bug_bounty_tips #bug_bounty

🔹 APT HackTheBox | Detailed Writeup (Foothold) 📆 Mon, 08 May 2023 19:46:31 GMT #️⃣ #cybersecurity #hackthebox #ctf #active_
🔹 APT HackTheBox | Detailed Writeup (Foothold) 📆 Mon, 08 May 2023 19:46:31 GMT #️⃣ #cybersecurity #hackthebox #ctf #active_directory #writeup

🔹 Azure Active Directory Flaw Allowed SAML Persistence 📆 2023-01-18 #️⃣ #Azure_AD
🔹 Azure Active Directory Flaw Allowed SAML Persistence 📆 2023-01-18 #️⃣ #Azure_AD

🔹 Bypassing OGNL sandboxes for fun and charities 📆 2023-01-27 #️⃣ #OGNL_injection
🔹 Bypassing OGNL sandboxes for fun and charities 📆 2023-01-27 #️⃣ #OGNL_injection

🔹 From Django Debug Mode to PII Data Leak of more than 500+ Employees due Broken Access Control and IDOR 📆 2023-04-14 #️⃣ #
🔹 From Django Debug Mode to PII Data Leak of more than 500+ Employees due Broken Access Control and IDOR 📆 2023-04-14 #️⃣ #Debug_mode_enabled

🔹 How Material Security Uncovered a Vulnerability in the Gmail API 📆 2023-04-18 #️⃣ #Broken_Access_Control
🔹 How Material Security Uncovered a Vulnerability in the Gmail API 📆 2023-04-18 #️⃣ #Broken_Access_Control

🔹 New high-severity vulnerability (CVE-2023-29552) discovered in the Service Location Protocol (SLP) 📆 2023-04-25 #️⃣ #DoS
🔹 New high-severity vulnerability (CVE-2023-29552) discovered in the Service Location Protocol (SLP) 📆 2023-04-25 #️⃣ #DoS

🔹 TENDA–N301-v6–(CVE-2023–29680,CVE-2023–29681) 📆 2023-04-30 #️⃣ #Sensitive_Information_Sent_Over_an_Unencrypted_Channel
🔹 TENDA–N301-v6–(CVE-2023–29680,CVE-2023–29681) 📆 2023-04-30 #️⃣ #Sensitive_Information_Sent_Over_an_Unencrypted_Channel

🔹 AWS Identity Center (formerly known as AWS SSO): A Guide to Privilege Escalation and Identity and Access Management 📆 202
🔹 AWS Identity Center (formerly known as AWS SSO): A Guide to Privilege Escalation and Identity and Access Management 📆 2023-05-01 #️⃣ #Privilege_escalation

🔹 The Art of Information Disclosure: A Deep Dive into CVE-2022-37985, a Unique Information Disclosure Vulnerability in Windo
🔹 The Art of Information Disclosure: A Deep Dive into CVE-2022-37985, a Unique Information Disclosure Vulnerability in Windows Graphics Component 📆 2023-05-03 #️⃣ #Out_of_bounds_Read

🔹 When Good APIs Go Bad: Uncovering 3 Azure API Management Vulnerabilities 📆 2023-05-04 #️⃣ #SSRF
🔹 When Good APIs Go Bad: Uncovering 3 Azure API Management Vulnerabilities 📆 2023-05-04 #️⃣ #SSRF

🔹 Privilege Escalations through Integrations 📆 2023-05-05 #️⃣ #postMessage
🔹 Privilege Escalations through Integrations 📆 2023-05-05 #️⃣ #postMessage

🔹 Cookie Bugs - Smuggling & Injection 📆 2023-05-05 #️⃣ #Cookie_smuggling
🔹 Cookie Bugs - Smuggling & Injection 📆 2023-05-05 #️⃣ #Cookie_smuggling

🔹 Bullied by Bugcrowd over Kape CyberGhost disclosure 📆 2023-05-05 #️⃣ #Local_Privilege_Escalation
🔹 Bullied by Bugcrowd over Kape CyberGhost disclosure 📆 2023-05-05 #️⃣ #Local_Privilege_Escalation

🔹 CSS Injection via PostMessages to stealing Credit Card Info 📆 2023-05-05 #️⃣ #postMessage
🔹 CSS Injection via PostMessages to stealing Credit Card Info 📆 2023-05-05 #️⃣ #postMessage

🔹 Dependabot Confusion: Gaining Access to Private GitHub Repositories using Dependabot 📆 2023-05-06 #️⃣ #Dependency_confusi
🔹 Dependabot Confusion: Gaining Access to Private GitHub Repositories using Dependabot 📆 2023-05-06 #️⃣ #Dependency_confusion

🔹 How a simple Directory Listing leads to PII Data Leakage, Remote Code Execution and many more vulnerabilities on a HR mana
🔹 How a simple Directory Listing leads to PII Data Leakage, Remote Code Execution and many more vulnerabilities on a HR management subdomain 📆 2023-05-07 #️⃣ #RCE