Zomato
【750刀】安卓deeplink利用
https://hackerone.com/reports/532225
【15000刀】npm漏洞五连杀
CVE-2021-32804 ($10,000)
CVE-2021-32803 ($2,000)
CVE-2021-37701 ($2,500)
CVE-2021-37712 (found internally - $1,000 token payout)
CVE-2021-37713 (found internally)
CVE-2021-39134 (TBD)
https://robertchen.cc/blog/2021/09/20/npm-rce
登录功能常见的十大漏洞,例如弱口令、sql注入、可暴力破解、用户枚举、鉴权绕过等~
https://redhuntlabs.com/blog/10-most-common-security-issues-found-in-login-functionalities.html
CVE-2021-22941利用
https://codewhitesec.blogspot.com/2021/09/citrix-sharefile-rce-cve-2021-22941.html
vCenter Server文件上传漏洞(CVE-2021-22005) 检测脚本
https://github.com/projectdiscovery/nuclei-templates/blob/f0aabe33be7e2494eebe2d8bfd955c797b8121db/cves/2021/CVE-2021-22005.yaml