Researchers’ blog
Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.
Aggressive scanning in bug bounty (and how to avoid it)
Hacking Tools
March 18, 2024
Presented by CryptoCat In bug bounty, researchers are expected to configure automated tools and scanners to remain within the defined limits of the program’s requirements. Any activity outside these limits can be defined as “aggressive” or “intrusive”. Hunters with experience in penetration testing
Testing static websites and uncovering hidden security vulnerabilities
Hacking Tools
March 14, 2024
By not conducting tests on the static websites of your targets, you may be overlooking numerous potential vulnerabilities. In today’s post, we will go through the top 3 most common ways of finding security vulnerabilities in static websites. You’ve probably come across a static site before. They oft
A hackers’ guide to online voting systems
News
March 5, 2024
In today’s digital world, online voting systems are pivotal in various domains. Businesses rely on them for award shows where the public’s vote determines winners. Music charts use online voting to influence album sales, shaping the music industry. Even self-driven communities depend on voting to ma
Introducing Message Templates
Product Updates
March 1, 2024
In case you missed it, we recently introduced message templates! In our ongoing effort to improve your experience and productivity, we’ve introduced this neat feature to bring efficiency and consistency right to your fingertips. To ensure you get the most out of our new message template functionalit
Hunting the 6 most common price manipulation vulnerabilities in e-commerce websites
News
February 5, 2024
E-commerce platforms process millions of transactions daily, roughly 20% of all purchases made worldwide are happening online. Unfortunately, not every e-commerce target receives the same security attention as others. The chances of encountering vulnerable price manipulation flaws in e-commerce bug
Bug Bytes #218 – Advent of Cyber, RCEs and hacking poems
Bug Bytes
December 6, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the weeks from November 19th to December 3rd Inti
Bug Bytes #217 – how to submit vulnerabilities, writing a great writeup and 2 years of bug bounty
Bug Bytes
November 22, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the weeks from November 6th to November 19th Inti
Get to know our new Head of Hackers: @r0adrunn3r!
News
November 9, 2023
We’re thrilled to introduce our new Head of Hackers, Soti Giannitsari! In her previous role as Head of Community at HackTheBox, Soti played a pivotal role in expanding one of the world’s largest Capture The Flag (CTF) communities, interacting with hackers on a daily basis. As she joins Intigriti, So
Bug Bytes #216 – SQL injections, Android XSS and Writing Quality Reports
Bug Bytes
November 2, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 23rd to October 29th Intigr
Bug Bytes #215 – Hackers in Lisbon, AI bug bounty and is this the end?
Bug Bytes
October 25, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 15th to October 22nd Intigr
Bug Bytes #214 – We launch a course, bug hunters go full time and the $20k bug
Bug Bytes
October 17, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 2nd to October 15th Click h
Bug Bytes #213 – Hacking a Prison, XSS on steroids, CAIDO free for students and Bogus CVEs
Bug Bytes
October 4, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 25th to October 1st Intig
Intigriti partners with TCM Security to train the next generation of bug bounty hunters
News
October 3, 2023
ANTWERP – TCM Security, a cybersecurity services and education company, is joining forces with bug bounty experts from Intigriti to introduce an online course exclusively designed for aspiring bug bounty hunters. The comprehensive bug bounty course, spanning 12 in-depth chapters, delves into every f
Yahoo partners with Intigriti to launch a new crowdsourced security program
News
September 28, 2023
Antwerp, Belgium September 28, 2023 Yahoo has partnered with Intigriti, a global leader in crowdsourced security, to launch a new public bug bounty program. The cybersecurity partnership officially launches today and expands Yahoo’s reach into the global crowdsourced security community. Under the te
Bug Bytes #212 – XSS Payloads, IDOR prediction and Cloud Security
Bug Bytes
September 27, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 18th to September 24th In
Revamped Credential Management and Webhooks Integration
Product Updates
September 18, 2023
We are delighted to roll out two significant updates that will redefine how you manage your program credentials and integrate your applications through webhooks. Let’s unpack the exciting details! We reworked our credential management to flexible and autonomous proces with a CSV structured upload fu
Bug Bytes #211 – Hacking Casinos, Microsoft’s Key Mishap, Read the Docs and ImageMagick Strikes Again
Bug Bytes
September 13, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 5th to September 10th Int
Bug Bytes #210 – Zenbleed, Interview Questions, Challenge Coins and SQL Injections
Bug Bytes
September 6, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from August 28th – September 3rd Intigri
Bug Bytes #209 – The only graphQL wordlist you need, ML bug hunting and VDP submissions
Bug Bytes
August 23, 2023
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from August 14th – August 20th Intigriti
Axel Springer National Media & Tech launches a public bug bounty program on Intigriti
News
August 22, 2023
Axel Springer has long been a pioneer in the digital publishing industry, with a vast portfolio of brands, such as Stepstone, Aviv, Idealo, BILD, Politico and Business Insider under its umbrella. Axel Springer National Media & Tech (NMT) is a subsidiary responsible for the development and maintenanc
