Researchers’ blog

Subscribe to our RRS feed to stay up-to-date with our latest blog articles for researchers.

Aggressive scanning in bug bounty (and how to avoid it)

Bug Bounty Tips & Methodology

Hacking Tools

March 18, 2024

Presented by CryptoCat In bug bounty, researchers are expected to configure automated tools and scanners to remain within the defined limits of the program’s requirements. Any activity outside these limits can be defined as “aggressive” or “intrusive”. Hunters with experience in penetration testing

Continue reading: Aggressive scanning in bug bounty (and how to avoid it)

Testing static websites and uncovering hidden security vulnerabilities

Bug Bounty Tips & Methodology

Hacking Tools

March 14, 2024

By not conducting tests on the static websites of your targets, you may be overlooking numerous potential vulnerabilities. In today’s post, we will go through the top 3 most common ways of finding security vulnerabilities in static websites. You’ve probably come across a static site before. They oft

Continue reading: Testing static websites and uncovering hidden security vulnerabilities

A hackers’ guide to online voting systems

Security Testing

News

March 5, 2024

In today’s digital world, online voting systems are pivotal in various domains. Businesses rely on them for award shows where the public’s vote determines winners. Music charts use online voting to influence album sales, shaping the music industry. Even self-driven communities depend on voting to ma

Continue reading: A hackers’ guide to online voting systems

Introducing Message Templates

Company News

Product Updates

March 1, 2024

In case you missed it, we recently introduced message templates! In our ongoing effort to improve your experience and productivity, we’ve introduced this neat feature to bring efficiency and consistency right to your fingertips. To ensure you get the most out of our new message template functionalit

Continue reading: Introducing Message Templates

Hunting the 6 most common price manipulation vulnerabilities in e-commerce websites

Security Testing

News

February 5, 2024

E-commerce platforms process millions of transactions daily, roughly 20% of all purchases made worldwide are happening online. Unfortunately, not every e-commerce target receives the same security attention as others. The chances of encountering vulnerable price manipulation flaws in e-commerce bug

Continue reading: Hunting the 6 most common price manipulation vulnerabilities in e-commerce websites

Bug Bytes #218 – Advent of Cyber, RCEs and hacking poems

Bug Bytes

Bug Bytes

December 6, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the weeks from November 19th to December 3rd Inti

Continue reading: Bug Bytes #218 – Advent of Cyber, RCEs and hacking poems

Bug Bytes #217 – how to submit vulnerabilities, writing a great writeup and 2 years of bug bounty

Bug Bytes

Bug Bytes

November 22, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the weeks from November 6th to November 19th Inti

Continue reading: Bug Bytes #217 – how to submit vulnerabilities, writing a great writeup and 2 years of bug bounty

Get to know our new Head of Hackers: @r0adrunn3r!

Company News

News

November 9, 2023

We’re thrilled to introduce our new Head of Hackers, Soti Giannitsari! In her previous role as Head of Community at HackTheBox, Soti played a pivotal role in expanding one of the world’s largest Capture The Flag (CTF) communities, interacting with hackers on a daily basis. As she joins Intigriti, So

Continue reading: Get to know our new Head of Hackers: @r0adrunn3r!

Bug Bytes #216 – SQL injections, Android XSS and Writing Quality Reports

Bug Bytes

Bug Bytes

November 2, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 23rd to October 29th Intigr

Continue reading: Bug Bytes #216 – SQL injections, Android XSS and Writing Quality Reports

Bug Bytes #215 – Hackers in Lisbon, AI bug bounty and is this the end?

Bug Bytes

Bug Bytes

October 25, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 15th to October 22nd Intigr

Continue reading: Bug Bytes #215 – Hackers in Lisbon, AI bug bounty and is this the end?

Bug Bytes #214 – We launch a course, bug hunters go full time and the $20k bug

Bug Bytes

Bug Bytes

October 17, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from October 2nd to October 15th Click h

Continue reading: Bug Bytes #214 – We launch a course, bug hunters go full time and the $20k bug

Bug Bytes #213 – Hacking a Prison, XSS on steroids, CAIDO free for students and Bogus CVEs

Bug Bytes

Bug Bytes

October 4, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 25th to October 1st Intig

Continue reading: Bug Bytes #213 – Hacking a Prison, XSS on steroids, CAIDO free for students and Bogus CVEs

Intigriti partners with TCM Security to train the next generation of bug bounty hunters

Company News

News

October 3, 2023

ANTWERP – TCM Security, a cybersecurity services and education company, is joining forces with bug bounty experts from Intigriti to introduce an online course exclusively designed for aspiring bug bounty hunters. The comprehensive bug bounty course, spanning 12 in-depth chapters, delves into every f

Continue reading: Intigriti partners with TCM Security to train the next generation of bug bounty hunters

Yahoo partners with Intigriti to launch a new crowdsourced security program

Customer Stories

News

September 28, 2023

Antwerp, Belgium September 28, 2023 Yahoo has partnered with Intigriti, a global leader in crowdsourced security, to launch a new public bug bounty program. The cybersecurity partnership officially launches today and expands Yahoo’s reach into the global crowdsourced security community. Under the te

Continue reading: Yahoo partners with Intigriti to launch a new crowdsourced security program

Bug Bytes #212 – XSS Payloads, IDOR prediction and Cloud Security

Bug Bytes

Bug Bytes

September 27, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 18th to September 24th In

Continue reading: Bug Bytes #212 – XSS Payloads, IDOR prediction and Cloud Security

Revamped Credential Management and Webhooks Integration

Company News

Product Updates

September 18, 2023

We are delighted to roll out two significant updates that will redefine how you manage your program credentials and integrate your applications through webhooks. Let’s unpack the exciting details! We reworked our credential management to flexible and autonomous proces with a CSV structured upload fu

Continue reading: Revamped Credential Management and Webhooks Integration

Bug Bytes #211 – Hacking Casinos, Microsoft’s Key Mishap, Read the Docs and ImageMagick Strikes Again

Bug Bytes

Bug Bytes

September 13, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from September 5th to September 10th Int

Continue reading: Bug Bytes #211 – Hacking Casinos, Microsoft’s Key Mishap, Read the Docs and ImageMagick Strikes Again

Bug Bytes #210 – Zenbleed, Interview Questions, Challenge Coins and SQL Injections

Bug Bytes

Bug Bytes

September 6, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from August 28th – September 3rd Intigri

Continue reading: Bug Bytes #210 – Zenbleed, Interview Questions, Challenge Coins and SQL Injections

Bug Bytes #209 – The only graphQL wordlist you need, ML bug hunting and VDP submissions

Bug Bytes

Bug Bytes

August 23, 2023

Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The second series is curated by InsiderPhD. Every week, she keeps us up to date with a comprehensive list of write-ups, tools, tutorials and resources. This issue covers the week from August 14th – August 20th Intigriti

Continue reading: Bug Bytes #209 – The only graphQL wordlist you need, ML bug hunting and VDP submissions

Axel Springer National Media & Tech launches a public bug bounty program on Intigriti

Customer Stories

News

August 22, 2023

Axel Springer has long been a pioneer in the digital publishing industry, with a vast portfolio of brands, such as Stepstone, Aviv, Idealo, BILD, Politico and Business Insider under its umbrella. Axel Springer National Media & Tech (NMT) is a subsidiary responsible for the development and maintenanc

Continue reading: Axel Springer National Media & Tech launches a public bug bounty program on Intigriti