sanjaymenon, (edited ) to vmware
@sanjaymenon@mastodon.social avatar

VMware Fusion/Workstation Pro Now Available Free for Personal Use 🥳

  • Pro Apps are now Free for Personal Use and Licensed for Commercial Use
  • VMware Workstation Player + Fusion Player Discontinued

https://blogs.vmware.com/workstation/2024/05/vmware-workstation-pro-now-available-free-for-personal-use.html

#VMware #bugbounty #infosec

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar

A compiled list of companies which accept responsible disclosure

https://bug-bounties.as93.net

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar

OWASP OFFAT (OFFensive Api Tester) is created to automatically test API for common vulnerabilities after generating tests from openapi specification file.

https://github.com/OWASP/OFFAT

davidbures, to swift
@davidbures@mstdn.social avatar

I will pay 100€ to whoever fixes this issue: https://github.com/buresdv/Cork/issues/191

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
paheko, to BugBounty French
@paheko@piaille.fr avatar

Nous ouvrons notre programme de bug bounty pour !

Cela veut dire que si vous cherchez et trouvez des failles de sécurité dans Paheko, on peut vous récompenser. Le montant de la récompense sera fait en fonction de la sévérité de la faille. On a débloqué 1000 € pour le moment, montant amené à évoluer en fonction des retours que nous recevrons.

Un audit de sécurité partiel aura aussi lieu dans les mois qui viennent.

Pour les détails sur le bug bounty, voir ici : https://fossil.kd2.org/paheko/doc/trunk/SECURITY.md

sanjaymenon, to ai
@sanjaymenon@mastodon.social avatar
bohwaz, to BugBounty French
@bohwaz@mamot.fr avatar

Hello les gens et les , des gens qui ont déjà mis en place un programme de pour un projet open source ?

La plupart des sites de bug bounty semblent conçus pour les grosses boîtes.

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar

LogSnare is an intentionally vulnerable web application for testing IDOR, broken access controls, and logging in Go.

https://github.com/sea-erkin/log-snare

sanjaymenon, to ai
@sanjaymenon@mastodon.social avatar
cyber_learning, to BugBounty French
@cyber_learning@piaille.fr avatar

Avons nous, en France et en français, une plate-forme éthique de divulgation de faille cyber à but non lucratif ?
Type openbugbounty ?
Si oui, laquelle ?

Le boost corrige les failles xss

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
wuzzi23, to llm

👉Put together a video about ASCII Smuggling. Hope it's interesting, tried to keep it short and concise.

Test your LLM apps for this new issue and also think about other areas this TTP applies to to build mitigations and catch hidden text in plain sight.

Special Unicode characters have been a common source for security feature bypasses.

https://m.youtube.com/watch?v=7z8weQnEbsc

agent0x0, to Podcast

:thinking:​ In need of some career inspiration?

Hear about @Jhaddix's transformative journey in Cybersecurity and his thoughts on the state of Bug Bounty, all in our latest episode of @sharedsecurity!

And for our Patreon supporters don’t miss a special bonus episode where Jason shares his biggest career accomplishment and failure!

Support the podcast on Patreon:
https://patreon.com/sharedsecurity

Watch on YouTube:
https://youtu.be/mb7SKIke5pg

Listen now!
https://sharedsecurity.net/2024/02/12/jason-haddix-on-bug-bounties-and-cybersecurity-career-growth/

Subscribe on your favorite podcast app:
https://sharedsecurity.net/subscribe

larsmb, to opensource
@larsmb@mastodon.online avatar

Does have a bug/feature bounty program that one can sponsor?

Because the heightmap issue is annoying me a surprising amount and I alas have other stuff I need to focus on ...

So if someone feels like converting the data set into a 10x10m heightmap layer that works with Osmand, do get in touch 🙂

https://github.com/osmandapp/OsmAnd/issues/18992

ChickenPwny, to BugBounty

=D it takes all the nuclei output makes it pretty now.

checkout my tool https://github.com/PolitoInc/EGOAlpha

@jerry behold the tool i made xD

itnewsbot, to BugBounty
@itnewsbot@schleuss.online avatar

Hackaday Links: January 28, 2024 - From the “No good deed goes unpunished” files, this week came news of a German pro... - https://hackaday.com/2024/01/28/hackaday-links-january-28-2024/

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar

https://grroxy.com

GRROXY combines powers of best tools to work together and became a powerful cyber toolkit Proxify proxy traffic, FFUF is Intruder, Cook is Payload generator etc.

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
rwxrwx, to BugBounty

@protonmail you paid $750 for a mail-based XSS? this is disappointing for a "service that respects privacy and puts people [...] first". https://www.sonarsource.com/blog/code-vulnerabilities-leak-emails-in-proton-mail/

avolha, to wordpress Polish

Jak analizować kod źródłowy wtyczek do WordPressa w poszukiwaniu błędów, za które ktoś mógłby nam zapłacić

https://yt.elonego.com/watch?v=IPKKPj4GSUo

sanjaymenon, to ai
@sanjaymenon@mastodon.social avatar

The top 10 AI security articles you must read in 2024

https://www.wiz.io/blog/top-10-ai-security-articles

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • thenastyranch
  • magazineikmin
  • everett
  • InstantRegret
  • rosin
  • Youngstown
  • slotface
  • love
  • khanakhh
  • kavyap
  • tacticalgear
  • GTA5RPClips
  • DreamBathrooms
  • provamag3
  • modclub
  • mdbf
  • normalnudes
  • Durango
  • ethstaker
  • osvaldo12
  • cubers
  • ngwrru68w68
  • tester
  • anitta
  • cisconetworking
  • Leos
  • JUstTest
  • All magazines