Cyber Security Round Up - September 30th, 2023
Android Pentesting, OSINT Guide, Web Security, Bug Bounty, Data Breaches, Malware Analysis and more.
We welcome you to Bi-Monthly newsletter by Hacklido to keep you updated with the latest Infosec trends around the globe.

📑 15 Blog Reads
My debut with a Critical Bug: How I found my first bug (API misconfiguration)
Android Pentesting Series — I : Configuring The Android Emulator/Device With Proxy (Burp)
Finding Clues in the Past: Unveiling Vulnerabilities with Wayback-Machine
Mastering OSINT: Building the Ultimate Environment for Open Source Intelligence
Android Pentesting Series — II : Setting up the CA Certs For Intercepting Web Traffic
The Cybersecurity Chronicles: Part 1 – Getting Started with Google's Certificate
Exploring the Power of OSINT: Use Cases in Various Fields of Cybersecurity
📹️ 5 Videos
Find and Exploit Server-Side Template Injection (SSTI) by @TCMSecurityAcademy
Mobile Hacking Maestro Sergey Toshin by @criticalthinkingpodcast
Learn how to Run ANY Linux Program In Memory by @_JohnHammond
🧵 5 Twitter Threads
Learn about The ESPIONAGE MALWARE by @RedHatPentester
Learn How Unicodes can be used to takeover accounts and bypass block lists by @vidocsecurity
Get familiar with BugBounty by @gregxsunday
📚 5 Recommended Reading
Critical WebP 0-day security CVE-2023-4863 impacts wider software ecosystem
Thinking Like an Attacker: Balancing Offensive and Defensive Cyber Tactics
What is this re-entrancy attack and how to find, explore and report such vulnerability?
⚒️ 2 Tools
AttackGen - AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework.
GPTFuzz - GPTFUZZER is a Red Teaming Large Language Model with Auto-Generated Jailbreak Prompts.
🏴 3 Upcoming CTF Events
Mode: Online
Date: 07th October 2023
Duration: 48 Hours
BlackHat MEA CTF Qualification 2023
Mode: Online
Date: 08th October 2023
Duration: 24 Hours
Mode: Online
Date: 13th October 2023
Duration: 48 Hours
📰 News
Discord is investigating cause of ‘You have been blocked’ errors
Millions of Exim mail servers exposed to zero-day RCE attacks
💼 Jobs
Company - ChartMogul
Role - Security Engineer
Location - EU (Remote)
Company - Crosslake Technologies
Role - Penetration Testing Consultant
Location - India (Remote)
Without the sponsors and partners hacklido wouldn't be where it is now, So we would like to thank them.
Sponsors:
Community Partners:
If you wish to Sponsor / Partner with hacklido and get benefitted? Reach out to us via Twitter or Discord and discuss with us!
Thank you for reading till here. If you loved the newsletter, don't forget to subscribe for getting such newsletter straight into your inbox. Happy Learning with 🤍 hacklido 💙