ZERO DAILY

Hacking, AppSec, and Bug Bounty newsletter

2017-10-30 | ActiveScan++ update, Reverse CTF fun, and DOM XSS

Monday, October 30

TOP STORY

  • KPMG: Bug bounty programs - not just for Silicon Valley tech companies

HACKTIVITY

You can see all the latest and greatest disclosures and bounties on www.hackerone.com/hacktivity

TWEET OF THE DAY

OTHER ARTICLES WE’RE READING

ABOUT ZERO DAILY

Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.

Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?

Have a news tip / story to highlight? We’d love to hear about it. Email: zerodaily@hackerone.com

Get this email forwarded to you? Click here to subscribe to the Zero Daily

Matthew Green's team "developed a sophisticated analytic technique called 'making a graduate student read every FIPS document on the CMVP website'." Using this technique, they noted a number of vendors had language indicating these keys were not being generated at each device startup.

Scott Piper