HackerOne Bug Bounty Disclosure: liberapay-member-team-twitter-account-broken-link-hijacking-via-expired-twitter-account-link-rox - RedPacket Security

CompanyLiberapay

RedPacket Security
HackerOne Bug Bounty Disclosure: another-liberapay-member-team-twitter-account-broken-link-hijacking-via-expired-twitter-account-link-rox - RedPacket Security

CompanyLiberapay

RedPacket Security

I would like to share a blog post by HackerOne. It is an interesting read, because it describes how AI vulnerability findings evolved from slop to verified exploitable risks. Verification and prioritization become increasingly important. Because the amount of reported vulnerabilities increases a lot more than teams are able to fix, it becomes inevitable to adapt remediation strategies. Periodic remediation becomes obsolete. We need to achieve continuous remediation processes that are automated as much as possible.

Blog post: https://www.hackerone.com/blog/continuous-threat-exposure-management-remediation-crisis

#cybersecurity #security #infosec #vulnerability #hacking #hackerone

Continuous Threat Exposure Management and the Remediation Crisis | HackerOne

Move from periodic testing to continuous intake, faster validation, and systemic fixes for recurring bug classes. A data-backed case for retooling remediation.

HackerOne
HackerOne Bug Bounty Disclosure: double-fdrop-on-a-socket-through-sys-netcontrol-slidybat - RedPacket Security

CompanyPlayStation

RedPacket Security

HackerOne Bug Bounty Disclosure: improper-input-validation-on-exported-deep-link-handler-crashes-filedisplayactivity-on-crafted-external-url-denial-of-service-khoof - https://www.redpacketsecurity.com/hackerone-bugbounty-disclosure-improper-input-validation-on-exported-deep-link-handler-crashes-filedisplayactivity-on-crafted-external-url-denial-of-service-khoof/

#HackerOne #CVE #Vulnerability #OSINT #ThreatIntel #Cyber

HackerOne Bug Bounty Disclosure: improper-input-validation-on-exported-deep-link-handler-crashes-filedisplayactivity-on-crafted-external-url-denial-of-service-khoof - RedPacket Security

CompanyNextcloud

RedPacket Security
HackerOne Bug Bounty Disclosure: cve-wrong-reuse-of-smb-connection-osama-hamad - RedPacket Security

Companycurl

RedPacket Security
HackerOne Bug Bounty Disclosure: heap-buffer-overflow-in-curl-ssl-push-certinfo-len-sole-bounds-check-is-debugassert-h-zh-z - RedPacket Security

Companycurl

RedPacket Security
HackerOne Bug Bounty Disclosure: ps-bd-j-privilege-escalation-using-nested-jar-gezine - RedPacket Security

CompanyPlayStation

RedPacket Security
HackerOne Bug Bounty Disclosure: stack-exhaustion-in-mime-multipart-reading-with-deeply-nested-subparts-wi-w - RedPacket Security

Companycurl

RedPacket Security
HackerOne Bug Bounty Disclosure: use-after-free-in-smb-connection-reuse-req-path-dangling-pointer-after-needle-destruction-nadsec - RedPacket Security

Companycurl

RedPacket Security