Researchers’ blog

Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.

Bug Bytes #81 – The new browser security ecosystem, MS Exchange attacks & HTML sanitization bypass

Bug Bytes

Bug Bytes

July 29, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 17 to 24

Continue reading: Bug Bytes #81 – The new browser security ecosystem, MS Exchange attacks & HTML sanitization bypass

Bug Bytes #80 – CI/DC kung fu, Path traversal via email & Pro DevTool tips

Bug Bytes

Bug Bytes

July 22, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 10 to 17

Continue reading: Bug Bytes #80 – CI/DC kung fu, Path traversal via email & Pro DevTool tips

Bug Bytes #79 – Burp’s story, postMessage XSS on Tumblr & Go tools for faster recon

Bug Bytes

Bug Bytes

July 15, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 03 to 10

Continue reading: Bug Bytes #79 – Burp’s story, postMessage XSS on Tumblr & Go tools for faster recon

Bug Business #6 – Get to know Robin, Intigriti’s Top Hacker in Q1

Hacker Spotlight

Hacker Spotlight

July 14, 2020

Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. This interview features Robin who won the first place in our leaderboard in the first quarter of 2020. He gracefully took a break from an already busy life to answer our qu

Continue reading: Bug Business #6 – Get to know Robin, Intigriti’s Top Hacker in Q1

Bug Bytes #78 – BIG-IP RCE, Azure account takeover & Hunt scanner is back!

Bug Bytes

Bug Bytes

July 8, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 26 of Jun

Continue reading: Bug Bytes #78 – BIG-IP RCE, Azure account takeover & Hunt scanner is back!

Bug Business #5 – Get to know Intigriti’s Q1 Top 3 Hackers: bitmap

Hacker Spotlight

Hacker Spotlight

July 7, 2020

Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. The next three interviews will feature the top 3 bug hunters in our leaderboard in the first quarter of 2020. Bitmap came in second with an Exceptional streak. He took time

Continue reading: Bug Business #5 – Get to know Intigriti’s Q1 Top 3 Hackers: bitmap

Bug Bytes #77 – Exploiting unexploitable XSS, Wordlists galore & RCE from any website with Bitdefender

Bug Bytes

Bug Bytes

July 1, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 19 to 26

Continue reading: Bug Bytes #77 – Exploiting unexploitable XSS, Wordlists galore & RCE from any website with Bitdefender

Crowdsourced ethical hacking platform Intigriti raises €4M+

Company News

News

June 25, 2020

Europe’s leading crowdsourced cybersecurity firm Intigriti has announced that it has raised €4.14 million in their Series A round, led by European based venture capital firm ETF partners. ETF partner Remy de Tonnac (previous CEO Gemalto / INSIDE secure) will join the board of directors. The investme

Continue reading: Crowdsourced ethical hacking platform Intigriti raises €4M+

Bug Bytes #76 – How to learn anything, Fantastic writeups & A tool to play with Burp’s REST API

Bug Bytes

Bug Bytes

June 24, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 12 to 19

Continue reading: Bug Bytes #76 – How to learn anything, Fantastic writeups & A tool to play with Burp’s REST API

Bug Bytes #75 – NahamCon, ServiceNow misconfigurations & Creating your own Alfred

Bug Bytes

Bug Bytes

June 17, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 05 to 12

Continue reading: Bug Bytes #75 – NahamCon, ServiceNow misconfigurations & Creating your own Alfred

Bug Bytes #74 – Testing for SSTI in Go, SSRF in Facebook and Kubernetes & PwnFox for a better Burp/Firefox experience

Bug Bytes

Bug Bytes

June 10, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 29 of May

Continue reading: Bug Bytes #74 – Testing for SSTI in Go, SSRF in Facebook and Kubernetes & PwnFox for a better Burp/Firefox experience

Bug Bytes #73 – Hacking JWTs for $100k on Apple, @JobertAbma’s founder stories & Chaining bugs for fun and profit

Bug Bytes

Bug Bytes

June 3, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 22 to 29

Continue reading: Bug Bytes #73 – Hacking JWTs for $100k on Apple, @JobertAbma’s founder stories & Chaining bugs for fun and profit

Bug Bytes #72 – RCE in Google Cloud, Smuggling HTTP Headers & @filedescriptor’s RPO Challenge

Bug Bytes

Bug Bytes

May 27, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 15 to 22

Continue reading: Bug Bytes #72 – RCE in Google Cloud, Smuggling HTTP Headers & @filedescriptor’s RPO Challenge

Bug Bytes #71 – 20K Facebook XSS, LevelUp 0x06 & Naffy’s Notes

Bug Bytes

Bug Bytes

May 20, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 08 to 15

Continue reading: Bug Bytes #71 – 20K Facebook XSS, LevelUp 0x06 & Naffy’s Notes

Bug Bytes #70 – Gmail XSS, Decrypting HTTPS without MiTM & Hakluke’s TikTok Tips

Bug Bytes

Bug Bytes

May 12, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 01 to 08

Continue reading: Bug Bytes #70 – Gmail XSS, Decrypting HTTPS without MiTM & Hakluke’s TikTok Tips

Bug Bytes #69 – @FransRosen’s postMessage tracker, the @zseano files & SSRF in e-mail addresses

Bug Bytes

Bug Bytes

May 5, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 24 of Apr

Continue reading: Bug Bytes #69 – @FransRosen’s postMessage tracker, the @zseano files & SSRF in e-mail addresses

Bug Bounty Q&A #4: How does Intigriti optimize bug bounty success?

Hacker Spotlight

Hacker Spotlight

April 30, 2020

Intigriti CEO, Stijn Jans, answers popular questions about bug bounty programs At Intigriti, we love a good conversation. You can find us on Twitter, LinkedIn and Facebook. If the situation permits, we attend events and conferences. When the conversation turns to ethical hacking and bug bounty, some

Continue reading: Bug Bounty Q&A #4: How does Intigriti optimize bug bounty success?

Bug Business #3 – Zseano’s notes on hacking & mentoring

Hacker Spotlight

Hacker Spotlight

April 29, 2020

Bug Business is a series of interviews in which experts from the bug bounty industry shine their light on bug types and trends. Sean a.k.a. Zseano defines himself as “just “another” web app hacker”, but is in our opinion much more than that. Over the past few years, Sean has been an active community

Continue reading: Bug Business #3 – Zseano’s notes on hacking & mentoring

Bug Bytes #68 – Memory leaks in webapps, @samwcyo’s Rocket League chain & JavaScript for Hackers

Bug Bytes

Bug Bytes

April 28, 2020

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series is curated by Mariem, better known as PentesterLand. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from 10 to 17

Continue reading: Bug Bytes #68 – Memory leaks in webapps, @samwcyo’s Rocket League chain & JavaScript for Hackers

Bug Bounty Q&A #3: What effort does is take to set up a bug bounty program?

Hacker Spotlight

Hacker Spotlight

April 23, 2020

Intigriti ceo Stijn Jans answers your questions about ethical hacking and bug bounty At Intigriti, we love a good conversation. You can find us on Twitter, LinkedIn and Facebook. If the situation permits, we attend events and conferences. When the conversation turns to ethical hacking and bug bounty

Continue reading: Bug Bounty Q&A #3: What effort does is take to set up a bug bounty program?