The Secure Edge: Daily Round-up of Infosec Blogs — Issue #32

Het Mehta
4 min readDec 23, 2021

Hola! After the break for 2 days… Here is the issue for today! Have a great day.

THOUGHTS THAT MATTER:

What Is Real Confidence:

  • - You don’t seek approval from others.
  • - You smile only when you really mean it.
  • - You’re not afraid of silence.
  • - You don’t shift responsibility.
  • - You always love yourself.
  • - You know who you are and what you want.
  • - You aren’t afraid to fail.

Infosec Punch:

SecurityZines : Understand log4j in and out in flyersecurityzines.com
Understand what happens at the back and how this vulnerability is came into existence and a simple payload to test this out.

Stored XSS by bypassing signature | by Abdulrahman Makki | عبدالرحمن مكي | Dec, 2021 | Mediumamakki.me
Today, i’m going to share with you how i found Stored Cross-Site Scripting (XSS) and bypassed the signature on a platform and reported it. If you want to try and find the vulnerability yourself…

How we found bugs and chained them in the company that finds bugs! | by Mohammad Hussam Alzeyyat | Dec, 2021 | Mediummedium.com
So me and my hacking mate Mohammed Eldawody were looking for some hot websites that have VDP, so we can just dance with it, and while we were looking around and searching we found that bugs scanning…

Public testing of BusyChain Testnet V2 is about to launch — bug-hunting! | by Ing. Robert Michálek | BusyTechnology | Dec, 2021 | Mediummedium.com
Busy is happy to reveal the first long-awaited community testing event. The updated version of BusyChain testnet V2 goes public on 22nd December 2021 at 3 PM CET and the world will be involved in the…

Google Dork Series — Part 4 !!! — Info Sec Helper — Mediuminfosec-helper.medium.com

Sorbet Finance Vulnerability Post Mortem | by Gelato Network | Gelato Network | Dec, 2021 | Mediummedium.com
How the Gelato team and honorable community members rescued 27M$ at risk from an attacker.

Unauthenticated Sensitive Information Disclosure at CRED | by Shubhayu Majumdar | Dec, 2021 | Mediummedium.com

I’m Shubhayu Majumdar, currently pursuing BTech in Computer Science…

GitHub — Diverto/nse-log4shell: Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021–44228)github.com
Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021–44228) — GitHub — Diverto/nse-log4shell: Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021–44228)

Past Issues:

The Secure Edge: Daily Round-up of Infosec Blogs #31 | Revuewww.getrevue.co

The Secure Edge: Daily Round-up of Infosec Blogs — Hola!!! Here is your fresh Today’s Newsletter packed with tons of informative things to keep you updated in the

The Secure Edge: Daily Round-up of Infosec Blogs #30 | Revuewww.getrevue.co
The Secure Edge: Daily Round-up of Infosec Blogs — 30th Issues So Far! Happy Saturday.

Twitter Tadka:

I Hope You enjoyed this issue; Give feedback on Twitter to improve your Feed :-)

--

--