Hacking, AppSec, and Bug Bounty newsletter
2017-07-12 | Battle for the net, IBB bounties, and New version of web-hacking 101
Wednesday, July 12
This is a battle for the future of the internet: https://www.battleforthenet.com/. Send a letter to the FCC in support of Net Neutrality. Mashable even has tips on how to write a good letter. Let your voice be heard.
Apache HTTP Request Parsing Whitespace Defects [8 upvotes] - $1,500 bounty for this report to Apache http IBB by @egilero. Resolved some time ago, but just disclosed yesterday.
Node modules path disclosure due to lack of error handling [7 upvotes] - $700 bounty for this report to Mapbox by @apalah.
You can see all the latest and greatest disclosures and bounties on www.hackerone.com/hacktivity
TWEET OF THE DAY
How did the creator of the Web feel about #netneutrality back when all this modern debate started in 2006? - @arstechnica
OTHER ARTICLES WE’RE READING
New version of web-hacking 101 by @yaworsk
Yesterday was Patch Tuesday.
Cyber insurance sales rose after Wannacry says Danish insurance company, Tryg.
NIST Releases Draft NIST Internal Report (NISTIR) 8179, Criticality Analysis Process Model: Prioritizing Systems and Components for public comment.
ABOUT ZERO DAILY
Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.
Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?
Have a news tip / story to highlight? We’d love to hear about it. Email: firstname.lastname@example.org
Get this email forwarded to you? Click here to subscribe to the Zero Daily
"When I invented the internet, I didn’t have to ask anyone’s permission.”