Researchers’ blog

Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.

Bug Bytes #111 – Finding your first bug, Middleware misconfigurations & Breaking Java XML parsers

Bug Bytes

Bug Bytes

February 24, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from February

Continue reading: Bug Bytes #111 – Finding your first bug, Middleware misconfigurations & Breaking Java XML parsers

Bug Bytes #110 – Scope based recon, Finding more IDORs & How to hack Sharepoint

Bug Bytes

Bug Bytes

February 17, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from February

Continue reading: Bug Bytes #110 – Scope based recon, Finding more IDORs & How to hack Sharepoint

Bug Bytes #109 – Hacking big tech companies with Dependency Confusion, Using crypto to forge JWTs & XSS that works in 2021

Bug Bytes

Bug Bytes

February 10, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from February

Continue reading: Bug Bytes #109 – Hacking big tech companies with Dependency Confusion, Using crypto to forge JWTs & XSS that works in 2021

Bug Bytes #108 – Browser to automate XSS, Finding bug bounty collaborators & Ending the SameSite confusion

Bug Bytes

Bug Bytes

February 3, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from January 2

Continue reading: Bug Bytes #108 – Browser to automate XSS, Finding bug bounty collaborators & Ending the SameSite confusion

Bug Bytes #107 – Go for HTTP smuggling, Open source frameworks vs Cache poisoning & Practicing RCE in NodeJS apps

Bug Bytes

Bug Bytes

January 27, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 18 to 25

Continue reading: Bug Bytes #107 – Go for HTTP smuggling, Open source frameworks vs Cache poisoning & Practicing RCE in NodeJS apps

Bug Bytes #106 – THE blind SSRF reference, Apple & Microsoft RCEs & Scanning for logic flaws

Bug Bytes

Bug Bytes

January 20, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 10 to 17

Continue reading: Bug Bytes #106 – THE blind SSRF reference, Apple & Microsoft RCEs & Scanning for logic flaws

Introducing report collaboration: split these bounties!

Company News

Product Updates

January 18, 2021

At intigriti we are firm believers in the power of teamwork. Our community is growing rapidly, as is the amount of programs and awarded bounties. A good time to kick off a cool new set of features that has been on your (and our) wishlist for a while now. We are really thrilled to announce that in th

Continue reading: Introducing report collaboration: split these bounties!

Bug Bytes #105 – Playing with Spring Boot Actuators, recon API sources, JS encryption & A heaps of writeups

Bug Bytes

Bug Bytes

January 13, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 03 to 10

Continue reading: Bug Bytes #105 – Playing with Spring Boot Actuators, recon API sources, JS encryption & A heaps of writeups

Bug Bytes #104 – Cache poisoning DoS, Burp themes & A couple of Facebook account takeovers

Bug Bytes

Bug Bytes

January 6, 2021

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 27 of Dec

Continue reading: Bug Bytes #104 – Cache poisoning DoS, Burp themes & A couple of Facebook account takeovers

Bug Bytes #103 – Cookie tossing, Recon tools benchmarks & Stealing Google docs with screenshots

Bug Bytes

Bug Bytes

December 30, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 20 to 27

Continue reading: Bug Bytes #103 – Cookie tossing, Recon tools benchmarks & Stealing Google docs with screenshots

Bug Bytes #102 – A $20k Outlook bug, The hacker interviewer interviewed & How to get pwned by your SIEM

Bug Bytes

Bug Bytes

December 23, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 13 to 20

Continue reading: Bug Bytes #102 – A $20k Outlook bug, The hacker interviewer interviewed & How to get pwned by your SIEM

Bug Bytes #101 – XSS for PDFs, KringleCon & A whole bunch of fantabulous tools

Bug Bytes

Bug Bytes

December 16, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 06 to 13

Continue reading: Bug Bytes #101 – XSS for PDFs, KringleCon & A whole bunch of fantabulous tools

Bug Bytes #100 – Apache XSS trick, Google in CLI without Captcha & How to easily fetch bug bounty scopes

Bug Bytes

Bug Bytes

December 9, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. Before we dive into the meat of this news

Continue reading: Bug Bytes #100 – Apache XSS trick, Google in CLI without Captcha & How to easily fetch bug bounty scopes

Bug Bytes #99 – Bypassing bots and WAFs, JQ in Burp & Smarter JSON fuzzing and subdomain takeovers

Bug Bytes

Bug Bytes

December 2, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 22 to 29

Continue reading: Bug Bytes #99 – Bypassing bots and WAFs, JQ in Burp & Smarter JSON fuzzing and subdomain takeovers

Intigriti wins Deloitte Rising Star award 2020

Company News

Awards

November 26, 2020

Intigriti wins Deloitte Fast 50 award Today it was announced that Intigriti has won the Rising Star award. The Rising Star 2020 by Deloitte ranks the fastest-growing tech companies in Belgium, based on their level of innovation, growth potential and scalability. The Rising Star is the award for the

Continue reading: Intigriti wins Deloitte Rising Star award 2020

Bug Bytes #98 – Imagemagick’s comeback, Treasure trove of wordlists, Advent of Cyber & How to get more hours in your day

Bug Bytes

Bug Bytes

November 25, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 15 to 22

Continue reading: Bug Bytes #98 – Imagemagick’s comeback, Treasure trove of wordlists, Advent of Cyber & How to get more hours in your day

Bug Bytes #97 – Breaking Site Isolation, Untrusted Types, SAD DNS & 31k Google SSRF

Bug Bytes

Bug Bytes

November 18, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 08 to 15

Continue reading: Bug Bytes #97 – Breaking Site Isolation, Untrusted Types, SAD DNS & 31k Google SSRF

Bug Bytes #96 – AI applied to bug bounty, Burp Collaborator notifications & @zseano’s BugBountyHunter

Bug Bytes

Bug Bytes

November 11, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 01 to 08

Continue reading: Bug Bytes #96 – AI applied to bug bounty, Burp Collaborator notifications & @zseano’s BugBountyHunter

Bug Bytes #95 – Spooky NAT Slipstreaming, WebLogic RCE in one GET request & Server-side vulnerabilities demystified

Bug Bytes

Bug Bytes

November 4, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 25 of Oct

Continue reading: Bug Bytes #95 – Spooky NAT Slipstreaming, WebLogic RCE in one GET request & Server-side vulnerabilities demystified

Bug Bytes #94 – Breaking Symfony apps, Why Cyber Security is so hard to learn & how best to approach it

Bug Bytes

Bug Bytes

October 28, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 18 to 25

Continue reading: Bug Bytes #94 – Breaking Symfony apps, Why Cyber Security is so hard to learn & how best to approach it