谷歌开始花钱收POC了,优化它家扫描器Tsunami
Announcing New Patch Reward Program for Tsunami Security Scanner
https://security.googleblog.com/2021/09/announcing-new-patch-reward-program-for.html
【MTN Group】多个漏洞导致应用级 DoS
https://hackerone.com/reports/946578
【Mail.ru】ii.worki.ru emarsys子域名劫持
https://hackerone.com/reports/1287686
在野利用客户端原型污染
https://blog.s1r1us.ninja/research/PP
新的alert方式:原型污染
http://archive.volgactf.ru/volgactf_2021/slides/VolgaCTF_2021_Stupin_Bobrov.pdf