Hacking, AppSec, and Bug Bounty newsletter
2017-10-13 | Locky ransomware, Exploiting OAuth misconfiguration to takeover account, and not the BSOD
Friday, October 13
You can see all the latest and greatest disclosures and bounties on www.hackerone.com/hacktivity
OTHER ARTICLES WE’RE READING
Krebs investigates, Hyatt breach
Don’t call it a comeback, ZD Net reports on Locky ransomware resurgence
Not the BSOD (Blue screen of death). Microsoft patch tuesday was a bit rough.
ABOUT ZERO DAILY
Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.
Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?
Have a news tip / story to highlight? We’d love to hear about it. Email: email@example.com
Get this email forwarded to you? Click here to subscribe to the Zero Daily
The issue involves a third-party vendor that Equifax uses to collect website performance data, and that vendor’s code running on an Equifax website was serving malicious content.