DEV Community

# bugbounty

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Cache Poisoning at the Edge: How Cloudflare Workers & Vercel Edge Functions Break Everything You Thought You Knew

Cache Poisoning at the Edge: How Cloudflare Workers & Vercel Edge Functions Break Everything You Thought You Knew

Comments
7 min read
Subdomain takeover in 2026 — why dangling CNAMEs still pay, and how I find them at scale

Subdomain takeover in 2026 — why dangling CNAMEs still pay, and how I find them at scale

Comments
5 min read
Business Logic Attacks Explained Using a Banking App

Business Logic Attacks Explained Using a Banking App

Comments
4 min read
The Pentester’s Guide to Finding CBC Bit Flipping Vulnerabilities

The Pentester’s Guide to Finding CBC Bit Flipping Vulnerabilities

Comments
4 min read
CBC Bit Flipping Explained: Why Encryption Alone Doesn't Guarantee Integrity

CBC Bit Flipping Explained: Why Encryption Alone Doesn't Guarantee Integrity

1
Comments
3 min read
CTF Lab Writeup: PowerAnalysis Part 2 (picoCTF)

CTF Lab Writeup: PowerAnalysis Part 2 (picoCTF)

Comments
11 min read
Intercept Is On: The First Time You Take Control of Web Traffic(#5)

Intercept Is On: The First Time You Take Control of Web Traffic(#5)

Comments
4 min read
Understanding the Burp Suite Proxy: The Feature That Changes How You See Websites(#3)

Understanding the Burp Suite Proxy: The Feature That Changes How You See Websites(#3)

Comments
5 min read
What Is Burp Suite? The Tool That Lets You See the Internet Differently(#1)

What Is Burp Suite? The Tool That Lets You See the Internet Differently(#1)

Comments
4 min read
Certificate Transparency Logs: The Internet's Public Diary

Certificate Transparency Logs: The Internet's Public Diary

Comments
4 min read
IDOR BugBounty Labs: 5 Realistic Challenges to Master Insecure Direct Object Reference

IDOR BugBounty Labs: 5 Realistic Challenges to Master Insecure Direct Object Reference

1
Comments
4 min read
IDOR Lab: The Bug Bounty Training Platform That Doesn't Hold Your Hand

IDOR Lab: The Bug Bounty Training Platform That Doesn't Hold Your Hand

Comments
3 min read
How AI Hunts Vulnerabilities: A Security Researcher's New Partner

How AI Hunts Vulnerabilities: A Security Researcher's New Partner

Comments
3 min read
What I learned from my first AI-assisted bug bounty submissions

What I learned from my first AI-assisted bug bounty submissions

1
Comments
4 min read
How I Started My Cybersecurity Journey as an SQA Engineer 🔐

How I Started My Cybersecurity Journey as an SQA Engineer 🔐

1
Comments
1 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.