Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
pentestercrab
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
61.
▲
Ruby Deserialization Exploitation – New Gadget Chain for Ruby on Rails
(github.com)
8 points
by
pentestercrab
5y ago
|
0 comments
62.
▲
Ask HN: Best Okta Alternative?
1 points
by
pentestercrab
5y ago
|
2 comments
63.
▲
Exploitation via Git embedded bare repos and core.fsmonitor, affects IDEs
(github.com)
1 points
by
pentestercrab
5y ago
|
0 comments
64.
▲
Impossible color – Claimed evidence of ability to see colors not in color space
(en.wikipedia.org)
2 points
by
pentestercrab
5y ago
|
0 comments
65.
▲
Bypass of allowedLdapHost check in Log4j 2.15.0 – Log4Shell (CVE-2021-44228)
(twitter.com)
3 points
by
pentestercrab
5y ago
|
1 comments
66.
▲
by
pentestercrab
5y ago
https://blockstream.com/satellite/ - The Bitcoin blockchain from space. No internet required.
67.
▲
by
pentestercrab
5y ago
Previous discussion from 2018: - https://news.ycombinator.com/item?id=18659809
68.
▲
The search for the “perfect” Advent Calendar (involves Python and Processing)
(blog.jgc.org)
1 points
by
pentestercrab
5y ago
|
1 comments
69.
▲
Data Exfiltration via CSS and SVG Font
(mksben.l0.cm)
57 points
by
pentestercrab
5y ago
|
10 comments
70.
▲
The status of Ruby memory trimming and how you can help with testing (2019)
(joyfulbikeshedding.com)
4 points
by
pentestercrab
5y ago
|
0 comments
71.
▲
FormatFuzzer: A framework for efficient and quality generation of binary inputs
(uds-se.github.io)
3 points
by
pentestercrab
5y ago
|
0 comments
72.
▲
Ruby Universal RCE Deserialization Gadget Chain (2018)
(elttam.com)
1 points
by
pentestercrab
5y ago
|
0 comments
73.
▲
Fail2ban – Remote Code Execution
(research.securitum.com)
169 points
by
pentestercrab
5y ago
|
62 comments
74.
▲
Petrov Day 2021: Mutually Assured Destruction?
(lesswrong.com)
4 points
by
pentestercrab
5y ago
|
0 comments
75.
▲
Home Assistant Amber
(crowdsupply.com)
6 points
by
pentestercrab
5y ago
|
0 comments
76.
▲
GitHub Actions checkspelling community workflow GitHub_TOKEN leakage via symlink
(github.com)
129 points
by
pentestercrab
5y ago
|
35 comments
77.
▲
Domino's iOS App Settings
(twitter.com)
14 points
by
pentestercrab
5y ago
|
0 comments
78.
▲
A hackers perspective on bug bounty triage
(shubs.io)
3 points
by
pentestercrab
5y ago
|
0 comments
79.
▲
by
pentestercrab
5y ago
The fivefold repetition rule requires no claim by the players.
80.
▲
DOM Invader: DOM XSS just got a whole lot easier to find
(portswigger.net)
3 points
by
pentestercrab
5y ago
|
0 comments
81.
▲
ZeroTier – Global Area Networking
(zerotier.com)
3 points
by
pentestercrab
5y ago
|
0 comments
82.
▲
Piecing Together the Dark Legacy of East Germany's Police (2008)
(wired.com)
3 points
by
pentestercrab
5y ago
|
0 comments
83.
▲
PrintNightmare (CVE-2021-1675): Remote code execution in Windows Spooler Service
(github.com)
10 points
by
pentestercrab
5y ago
|
0 comments
84.
▲
BlockFi issued BTC instead of USD, a 45,000x mistake
(twitter.com)
1 points
by
pentestercrab
5y ago
|
0 comments
85.
▲
I Hacked Google App Engine: Anatomy of a Java Bytecode Exploit
(blog.polybdenum.com)
2 points
by
pentestercrab
5y ago
|
0 comments
86.
▲
The ‘artisanal genius’ of creating iPhone-breaking hacks
(smh.com.au)
1 points
by
pentestercrab
5y ago
|
0 comments
87.
▲
by
pentestercrab
5y ago
Security ======== * sshd(8): OpenSSH 8.5 introduced the LogVerbose keyword. When this option was enabled with a set of patterns that activated logging in code that runs in the low-privilege sandboxed sshd process, the log messages
88.
▲
Fuzzing Sockets: Apache HTTP, Part 2: Custom Interceptors
(securitylab.github.com)
1 points
by
pentestercrab
6y ago
|
0 comments
89.
▲
Sd: My Script Directory
(ianthehenry.com)
3 points
by
pentestercrab
6y ago
|
0 comments
90.
▲
You might want to update your F5 Big IP appliances
(twitter.com)
6 points
by
pentestercrab
6y ago
|
0 comments
More ›