The Secure Edge: Daily Round-up of Infosec Blogs — Issue #38

THOUGHTS THAT MATTER:

Infosec Punch:

How I got access Maxlifeinsurance insurance company AWS metadata access by SSRF | by Santosh Kumar Sha (@killmongar1996) | Dec, 2021 | Mediumnotifybugme.medium.com
My name is Santosh Kumar Sha, I’m a security researcher from India(Assam). In this article, I will be describing How I was able Find multiple SSRF with aws metadata access ON a Maxlifeinsurance…

Getting access to the Database of a Crypto Exchange using Google Dorks! | by Priyanshu Kumar | Dec, 2021 | Mediumpriyanshu-txt.medium.com
This write-up is about how I was able to get access to the database of an Indian crypto services platform, InstaCrypto, where thousands of it’s user’s sensitive KYC data like Aadhaar, Pan, Bank…

Bug Bounty will still exist after the evolution of Web 3.0? — Noobsploitnoobsploit.in
Web 3.0 tools, Bug bounty and Vulnerability possibilities discussed in this post by the top most hackers,will this still exist ?

GitHub — nyxnor/onionjuggler: Manage your Onion Services via CLI or TUI on Unix-like operating system with a POSIX compliant shell.github.com
Manage your Onion Services via CLI or TUI on Unix-like operating system with a POSIX compliant shell. — GitHub — nyxnor/onionjuggler: Manage your Onion Services via CLI or TUI on Unix-like operating system with a POSIX compliant shell.

Passive Information Gathering for Pentesting | by Mirabbas Agalarov | Dec, 2021 | Mediummirabbasagalarov.medium.com
Whois is a widely used database search tool used to discover domain name information and IP address information about a company. The domain name information sometimes contains important contact…

Past Issues:

The Secure Edge: Daily Round-up of Infosec Blogs — Issue #37 | Revuewww.getrevue.co
The Secure Edge: Daily Round-up of Infosec Blogs — Hola!!! Here is your fresh Today’s Newsletter packed with tons of informative things to keep you updated in th

The Secure Edge: Daily Round-up of Infosec Blogs — Issue #36 | Revuewww.getrevue.co
The Secure Edge: Daily Round-up of Infosec Blogs -

Twitter Tadka:

--

--

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store