Day126: 每日漏洞挖掘——5.6

1.On the Fuzzing Hook

https://www.code-intelligence.com/blog/on-the-fuzzing-hook

介绍fuzzing hook

2. How masscan works

https://rushter.com/blog/how-masscan-works/

写扫描器的,可以看下。

3. 阿里味儿的代码审计随想

https://evilpan.com/2022/05/01/code-audit-thoughts/

4.$1000: How I could have Hack any account and become a billionaire overnight👑Top Crypto-Trading Platform

https://infosecwriteups.com/1000-how-i-could-have-hack-any-account-and-become-a-billionaire-overnight-top-crypto-trading-ff0e25b6013c

漏洞分析:

  1. https://hackerone.com/reports/1551176 Able to bypass email verification and change email to any other user email 绕过电子邮件验证

挖掘进度:

继续databricks,已经有新的私有项目发过来了,正在recon

Day126: 每日漏洞挖掘——5.6”的一个响应

发表评论

Fill in your details below or click an icon to log in:

WordPress.com 徽标

您正在使用您的 WordPress.com 账号评论。 注销 /  更改 )

Twitter picture

您正在使用您的 Twitter 账号评论。 注销 /  更改 )

Facebook photo

您正在使用您的 Facebook 账号评论。 注销 /  更改 )

Connecting to %s