Microsoft Offers Rewards of Up to $20,000 in New Xbox Bug Bounty Program

Program is the latest the tech giant has launched that pay users and security researchers to find vulnerabilities in its numerous products. Continue reading Microsoft Offers Rewards of Up to $20,000 in New Xbox Bug Bounty Program

Google to Offer Advance Payments in Patch Rewards Program

Google says it plans to be more proactive in its bug and vulnerability hunting and is now offering money before patch work is completed, as opposed to after the fact. Security needs to be a proactive enterprise, which usually means that companies such … Continue reading Google to Offer Advance Payments in Patch Rewards Program

‘URGENT/11’ Critical Infrastructure Bugs Threaten EternalBlue-Style Attacks

Researchers have uncovered easy-to-exploit bugs that can impact physical safety, utilities, healthcare, critical infrastructure and more, setting the stage for widespread worm attacks. Continue reading ‘URGENT/11’ Critical Infrastructure Bugs Threaten EternalBlue-Style Attacks

Instagram 2FA Bypass, A Tale of Superlative Bug Hunting Skills & Indolent Multi-Factor Authentication

Via Tara Seals writing at the Threatpost Blog, detailing the highly competent bug hunting skill set of Laxman Muthiyah, examining – if you will – the lackadaisical 2FA data flow promulgated by Facebook, Inc. (Nasdaq: FB) on the company’s owned Instagr… Continue reading Instagram 2FA Bypass, A Tale of Superlative Bug Hunting Skills & Indolent Multi-Factor Authentication

Bugs, Breaches, and More! – Application Security Weekly #65

    There’s no escape that will save you…, the privilege of running a Chrome extension, and Four practices towards DevSecOps! News Bugs, Breaches, and More! There’s no escape that will save you… The privilege of running a Chrome… Continue reading Bugs, Breaches, and More! – Application Security Weekly #65

Bugs, Breaches, and More! – Application Security Weekly #55

XSS Vulnerability in Abandoned Cart Plugin Leads to WordPress Site Takeover, The RedMonk Programming Language Rankings: January 2019, I Deleted Facebook Last Year; Here’s What Changed (and What Didn’t), CommitStrip: Over-excited, and more! … Continue reading Bugs, Breaches, and More! – Application Security Weekly #55

Andrew Peterson, Signal Sciences – Enterprise Security Weekly #124

Andrew Peterson is the Founder & CEO of Signal Sciences, and an O’Reilly author of “Cracking Security Misconceptions”. He joins the show today to talk about prioritizing bugs, if certain bugs at lower levels are being exploited, how to … Continue reading Andrew Peterson, Signal Sciences – Enterprise Security Weekly #124

Bugs, Breaches, and More! – Application Security Weekly #48

    Concerns about WordPress’ new “White Screen of Death”, Google Chrome changes could ‘destroy’ ad-blockers, Mozilla is adding and ad-blocker to Firefox Focus 9.0, Websites can steal browser data via extensions APIs, a Fo… Continue reading Bugs, Breaches, and More! – Application Security Weekly #48