Oct. 7, 2023, 11:10 a.m. | 24BkDoor

System Weakness - Medium systemweakness.com

HackerOne — Triage team — reporting XSS — Gone Wrong

The tales of an N/A hunter

The Unknown IP attack linking to HackerOne SSRF — Refusal to fix or accept.

To better understand this ramble you will need to read:

Exploring Defacement Techniques: Unveiling the Power of Polyglot Payloads

Then you may also watch:

https://medium.com/media/acae7e27164f52ffb7b3e8101d5d5d07/href
  1. An XSS vulnerability was discovered which allows any with access to the page to execute arbitrary commands.
  2. A vulnerability exists in HackerOne which:

* Allows …

bug bounty cybersecurity hackerone hacking xss-attack

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Salesforce Solution Consultant

@ BeyondTrust | Remote United States

Divisional Deputy City Solicitor, Public Safety Compliance Counsel - Compliance and Legislation Unit

@ City of Philadelphia | Philadelphia, PA, United States

Security Engineer, IT IAM, EIS

@ Micron Technology | Hyderabad - Skyview, India

Security Analyst

@ Northwestern Memorial Healthcare | Chicago, IL, United States

Werkstudent Cybersecurity (m/w/d)

@ Brose Group | Bamberg, DE, 96052