Bug Bounty Hunters: Have you joined the Wordfence Bug Bounty Program discord server yet? All skill levels are welcome to join.

https://discord.gg/AjC7aBNshP

A great place to meet other researchers, share tips, advice, and victories - plus you can connect directly with the Wordfence Threat Intelligence team and get guidance on how to be successful in our program.

Search "Wordfence Bug Bounty Discord" or check the comments.

#bugbounty #BugBountyHunter #bugbountyhunting

https://github.com/brotheralameen1/Discordforschool/security/advisories/GHSA-63xr-98vc-whx5

Published Security Advisory for OneTrust SDK V6.33.0 Vulnerable to Prototype Pollution causing DoS in the system by editing Prototype Value. Currently, submitted this to MITRE CVE to request publication of my CVE to the National Vulnerability Database and awaiting their response. You can click the link above to learn more about the exploit.

#exploit #javascript #prototype #pollution #ethical #ethicalhacking #penetration #testing #cybersecurity #informationsecurity #infosec #cybersec #bughunting #bugbounty #bugbountyhunting #bughunter #webapplication #webapplicationsecurity #security

OneTrust SDK V6.33.0 Vulnerable to Prototype Pollution causing DoS in the system by editing Prototype Value

# OneTrust SDK v6.33.0 - Prototype Pollution Vulnerability via `Object.setPrototypeOf` and `Object.assign` (DoS Impact) - **Exploit Title**: OneTrust SDK v6.33.0 - Prototype Pollution Vulnerabil...

GitHub
Bug Bounty da Nubank é considerado Farsa, desmotivando Hunters

Hunters relata problemas graves no programa de Bug Bounty da Nubank.

13SEC NEWS

I've been reading about the subject of #whiteHatHacking in the recent weeks, and the area of #bugBountyHunting really intrigued me.

There have been similar programs, but only for the #WordPress core.

I'm glad there's a new financial incentive in the WordPress ecosystem, to help fix bugs and security issues of popular plugins/themes, and make this #openSource project remain competitive.

 

https://wptavern.com/wordfence-launches-bug-bounty-program

Wordfence Launches Bug Bounty Program

Wordfence launched a bug bounty program today to provide financial incentive for security researchers reporting high risk vulnerabilities to the company’s program. After researchers disclose …

WP Tavern

I'm taking my #WebApp #BugBountyHunting experience and looking for employment as a #Stealth #Recon #Vulnerability #Assessor for #RedTeam #Pentesting.

$1000 for anyone who helps me get a first paycheque.