
PR's Tumblrdome

JVL
YOU ARE THE REASON

⁂
Peter Solarz

let's talk about Bridgerton tea, my ask is open
Claire Keane
Cosimo Galluzzi
RMH

@theartofmadeline
Today's Document
I'd rather be in outer space 🛸
we're not kids anymore.
hello vonnie
Three Goblin Art

Origami Around
Sweet Seals For You, Always
One Nice Bug Per Day
seen from Japan

seen from United States

seen from Malaysia
seen from United States
seen from United States
seen from United States

seen from United States

seen from United States
seen from United States

seen from Malaysia

seen from United States

seen from United States

seen from United States
seen from United States
seen from United States

seen from United States

seen from United States

seen from Malaysia

seen from United States

seen from France
@ph17ur

Anya is live and ready to show you everything. Watch her strip, dance, and perform exclusive shows just for you. Interact in real-time and make your fantasies come true.
Free to watch • No registration required • HD streaming
source: https://medium.com/@kenanistaken/how-to-find-and-exploit-xss-25581bfc0a3d

Anya is live and ready to show you everything. Watch her strip, dance, and perform exclusive shows just for you. Interact in real-time and make your fantasies come true.
Free to watch • No registration required • HD streaming
Source: https://portswigger.net/web-security/cors
Using OpenSSL to en/decrypt *things*
eg:
ENCODE - using key $ openssl enc -aes256 -k [YOUR KEY] -in in-file.tgz -out out-file.tgz.enc DECODE - using key $ openssl aes256-cbc -k [YOUR KEY] -in in-file.tgz -out out-file.tgz.enc ENCODE - using salt $ openssl aes-256-cbc -a -salt -in secrets.txt -out secrets.txt.enc DECODE - using salt$ openssl aes-256-cbc -d -a -in secrets.txt.enc -out secrets.txt.new
Source: https://twitter.com/MasterSEC_AR/status/1256689299833176069
Juice Shop SQLi.
Took me a little while to remember to close the statement off, after ‘%admin%’ so it doesn’t process password.
If you don’t close the statement off, it tries to process password.
Bug Hunting - Broken Access Control.
Takeaway - “A quick ‘search' in your proxy history for your ID should be [the] requests you inspect first...”
Bug Crowd Uni - Broken Access Control. https://youtu.be/94-tlOCApOc

Anya is live and ready to show you everything. Watch her strip, dance, and perform exclusive shows just for you. Interact in real-time and make your fantasies come true.
Free to watch • No registration required • HD streaming
Bug Crowd Uni: https://youtu.be/gkMl1suyj3M
Web Application Hacker's Handbook 2
#bugbountytips #wahh
#bugbountytips #csrf
SSRF on Lyft, by @nahamsec
https://www.nahamsec.com/posts/my-expense-report-resulted-in-a-server-side-request-forgery-ssrf-on-lyft
We hacked Lyft and reported a SSRF to them via their Bug Bounty Program on HackerOne!
HBO abuses DMCA to take down a 13 year old girl's artwork because she used the phrase "winter is coming". Assholes. WINTER IS COMING! Assholes. http://www.theregister.co.uk/2016/12/08/winter_is_coming_hbo_dmca_trademark/

Anya is live and ready to show you everything. Watch her strip, dance, and perform exclusive shows just for you. Interact in real-time and make your fantasies come true.
Free to watch • No registration required • HD streaming
A sign by the airport in Helsinki, Finland. Welcoming You ;)
No wonder Linus left the dark cold place ;) LOL. Via https://www.reddit.com/r/europe/comments/5gnthw/a_sign_by_the_airport_in_helsinki_finland/
Reasons to go to Finland.
Secure yourselves, and your communities.
(and add to that a permanently enabled, non-logging, VPN)