-
Building Botnet on ServiceWorkers
-
PrepCAPTCHA, for bots and pentesters
-
Using Appcache and ServiceWorker for Evil
-
Let's make Offline Web Applications secure!
-
Why You Don't Need 2 Factor Authentication
-
Puzzle #2: Really Curious XSS in Rails
-
Mongo BSON Injection: Ruby Regexps Strike Again
-
Hacking Starbucks for unlimited coffee
-
Hacking Pusher with simple crypto vulnerability
-
How to Fix Authentication: Email as a Password Manager
-
Why you need to hash reset_token like password
-
How "../sms" could bypass Authy 2 Factor Authentication
-
ProfileJacking - legal tricks to detect user profile
-
RECONNECT - critical bug in websites with Facebook Login
-
Your API Authentication is insecure, and we'll tell you why
-
Format Injection Vulnerability in Duo Security Web SDK
-
Using open-uri? Check your code - you're playing with fire!
-
Public report for Peatio
-
Hacking a Bitcoin Exchange
-
Puzzle #1