Hacking, AppSec, and Bug Bounty newsletter
2017-07-14 | Broadpwn2, 4k IDOR, and Content type mishap
Friday, July 14
Friday’s are for PoC posts...
How a simple IDOR become a $4K User Impersonation vulnerability by @shahmeer_amir
Content type mishap allowing any file upload in cabana.yahoo.com by @uraniumhacker
You can see all the latest and greatest disclosures and bounties on www.hackerone.com/hacktivity
Want to see your blog post here? Email us email@example.com to be considered. :)
OTHER ARTICLES WE’RE READING
For fun weekend reading: ICS-CERT Annual Assessment Report
Vault7 - HighRise
ABOUT ZERO DAILY
Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.
Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?
Have a news tip / story to highlight? We’d love to hear about it. Email: firstname.lastname@example.org
Get this email forwarded to you? Click here to subscribe to the Zero Daily
What’s the motivation, beyond simply the chaos factor?