Breaking Down the OWASP Top 10: Insecure Design HackerOne Por:Andrew Pratt 17 de Dezembro de 2024, 19:23 Learn about the different types of insecure design vulnerabilities and how to identify them.
How a Privilege Escalation Led to Unrestricted Admin Account Creation in Shopify HackerOne Por:Andrew Pratt 12 de Dezembro de 2024, 19:50 This Shopify privilege escalation vulnerability could have resulted in the creation of unrestricted admin accounts.
Breaking Down the OWASP Top 10: Injection HackerOne Por:Andrew Pratt 21 de Novembro de 2024, 15:14 Gain insights into injection vulnerabilities, the different classifications, and potential security bypass techniques.
How Inadequate Authentication Logic Led to an MFA Bypass and Account Takeover HackerOne Por:Andrew Pratt 20 de Novembro de 2024, 14:49 Learn how inadequate authentication logic led to an MFA bypass, plus 11 authentication best practices to prevent vulnerabilities like these.
OWASP Top 10: The Risk of Cryptographic Failures HackerOne Por:Andrew Pratt 21 de Outubro de 2024, 18:01 Cryptographic failures: what are they and why are they considered so concerning by the OWASP Top 10?
Vulnerability Deep Dive: Gaining RCE Through ImageMagick With Frans Rosen HackerOne Por:Andrew Pratt 17 de Outubro de 2024, 17:36
How an IDOR Vulnerability Led to User Profile Modification HackerOne Por:Andrew Pratt 8 de Outubro de 2024, 17:53 Learn the ins and outs of IDOR vulnerabilities and how one exploitation led to malicious user profile modification.