app 21
- [HackerNotes Ep.114] Single Page Application Hacking Playbook
- 👩💻IW Weekly #122: SSRF, Password Reset Vulnerability, XSS in Hotjar, Single-Packet Attack, WhatsApp Desktop Code Execution, Business Logic Errors and many more…
- 👩💻IW Weekly #110: GitHub Actions Cache Poisoning, CVE-2024-0200, Relative Path File Injection, Hacking Apple, Hacking Microsoft's AI bot and many more…
- 👩💻IW Weekly #98: Image to RCE, MySQL Server Access, Hacking College Website, RCE on Apple’s Production Server, Web-Cache Deception Vulnerability, Github Code Search, SSRF on Vercel and many more…
- 👩💻IW Weekly #88: Process Injection, Race Condition, CLRF to XSS in Snapchat, Active Directory Guide, Main App Hacking Methodology, CSP Research, CORS Misconfigurations and many more…
- 👩💻IW Weekly #82: Single Packet Attack, Nuclei v3, DOM XSS, IDOR Insights, Bypassing CSP, AI & Hacking, Android App Hacking and many more…
- 👩💻IW Weekly #73: ATO in Shopify Stores, CVE-2023-36809, Risks in Cross-Chain Bridges, Bypassing Firewalls, Hacking iOS Apps, Uncovering Zenbleed and many more..
- 👩💻IW Weekly #69: OpenSSH RCE, Xamarin Applications Reverse Engineering, Puzzled XSS, CVE-2023-3519 analysis, XSS and CORS bypass and many more..
- Account Takeover in Canvas Apps served in Comet due to failure in Cross-Window-Message Origin validation
- You Have One New Appwntment: Exploiting iCalendar Properties in Enterprise Applications
- Multiple bugs allowed malicious Android Applications to takeover Facebook/Workplace accounts
- Multiple bugs allowed malicious Android Applications to takeover Facebook/Workplace accounts
- Down the Rabbit Hole: Unusual Applications of OpenAI in Cybersecurity Tooling
- Oculus SSO “Account Linking” bug leads to account takeover on third party websites and inside VR Games/Apps
- Oculus SSO “Account Linking” bug leads to account takeover on third party websites and inside VR Games/Apps
- Applying Offensive Reverse Engineering to Facebook Gameroom
- We Hacked Apple for 3 Months: Here’s What We Found
- Protecting your apps from link-based vulnerabilities: reverse tabnabbing, broken-link hijacking, and open redirects
- Expanding the Attack Surface: React Native Android Applications
- Low-Hanging Apples: Hunting Credentials and Secrets in iOS Apps
- From checkra1n to Frida: iOS App Pentesting Quickstart on iOS 13