Researchers’ blog
Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.
Bug Bytes #81 – The new browser security ecosystem, MS Exchange attacks & HTML sanitization bypass
Bug Bytes
July 29, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 17 to 24
Bug Bytes #80 – CI/DC kung fu, Path traversal via email & Pro DevTool tips
Bug Bytes
July 22, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 10 to 17
Bug Bytes #79 – Burp’s story, postMessage XSS on Tumblr & Go tools for faster recon
Bug Bytes
July 15, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 03 to 10
Bug Business #6 – Get to know Robin, Intigriti’s Top Hacker in Q1
Hacker Spotlight
July 14, 2020
Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. This interview features Robin who won the first place in our leaderboard in the first quarter of 2020. He gracefully took a break from an already busy life to answer our qu
Bug Bytes #78 – BIG-IP RCE, Azure account takeover & Hunt scanner is back!
Bug Bytes
July 8, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 26 of Jun
Bug Business #5 – Get to know Intigriti’s Q1 Top 3 Hackers: bitmap
Hacker Spotlight
July 7, 2020
Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. The next three interviews will feature the top 3 bug hunters in our leaderboard in the first quarter of 2020. Bitmap came in second with an Exceptional streak. He took time
Bug Bytes #77 – Exploiting unexploitable XSS, Wordlists galore & RCE from any website with Bitdefender
Bug Bytes
July 1, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 19 to 26
Crowdsourced ethical hacking platform Intigriti raises €4M+
News
June 25, 2020
Europe’s leading crowdsourced cybersecurity firm Intigriti has announced that it has raised €4.14 million in their Series A round, led by European based venture capital firm ETF partners. ETF partner Remy de Tonnac (previous CEO Gemalto / INSIDE secure) will join the board of directors. The investme
Bug Bytes #76 – How to learn anything, Fantastic writeups & A tool to play with Burp’s REST API
Bug Bytes
June 24, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 12 to 19
Bug Bytes #75 – NahamCon, ServiceNow misconfigurations & Creating your own Alfred
Bug Bytes
June 17, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 05 to 12
Bug Bytes #74 – Testing for SSTI in Go, SSRF in Facebook and Kubernetes & PwnFox for a better Burp/Firefox experience
Bug Bytes
June 10, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 29 of May
Bug Bytes #73 – Hacking JWTs for $100k on Apple, @JobertAbma’s founder stories & Chaining bugs for fun and profit
Bug Bytes
June 3, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 22 to 29
Bug Bytes #72 – RCE in Google Cloud, Smuggling HTTP Headers & @filedescriptor’s RPO Challenge
Bug Bytes
May 27, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 15 to 22
Bug Bytes #71 – 20K Facebook XSS, LevelUp 0x06 & Naffy’s Notes
Bug Bytes
May 20, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 08 to 15
Bug Bytes #70 – Gmail XSS, Decrypting HTTPS without MiTM & Hakluke’s TikTok Tips
Bug Bytes
May 12, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 01 to 08
Bug Bytes #69 – @FransRosen’s postMessage tracker, the @zseano files & SSRF in e-mail addresses
Bug Bytes
May 5, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 24 of Apr
Bug Bounty Q&A #4: How does Intigriti optimize bug bounty success?
Hacker Spotlight
April 30, 2020
Intigriti CEO, Stijn Jans, answers popular questions about bug bounty programs At Intigriti, we love a good conversation. You can find us on Twitter, LinkedIn and Facebook. If the situation permits, we attend events and conferences. When the conversation turns to ethical hacking and bug bounty, some
Bug Business #3 – Zseano’s notes on hacking & mentoring
Hacker Spotlight
April 29, 2020
Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. Sean a.k.a. Zseano defines himself as “just “another” web app hacker”, but is in our opinion much more than that. Over the past few years, Sean has been an active community
Bug Bytes #68 – Memory leaks in webapps, @samwcyo’s Rocket League chain & JavaScript for Hackers
Bug Bytes
April 28, 2020
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 10 to 17
Bug Bounty Q&A #3: What effort does is take to set up a bug bounty program?
Hacker Spotlight
April 23, 2020
Intigriti ceo Stijn Jans answers your questions about ethical hacking and bug bounty At Intigriti, we love a good conversation. You can find us on Twitter, LinkedIn and Facebook. If the situation permits, we attend events and conferences. When the conversation turns to ethical hacking and bug bounty
