Hacker Newsnew | past | comments | ask | show | jobs | submit | LuD1161's commentslogin

wow. this is such an interesting perspective. hadn't thought so deeply about my 'shower thought'. This expands my horizon. Might put this into the update. When I was thinking about it, the fleeting thought was majorly about the 'newness effect' which isn't related to a subjective liking of something but is pervasive across everything, whether it be tech, music, movies etc.

Thanks for sharing this.


A friend said KubeCon "isn't the same anymore." I asked what got worse. They couldn't answer. Turns out there's a name for this.

Three names, actually: 1. Hedonic Adaptation : Brain's inbuilt boredom machine 2. Rosy Retrospection : Your Memory is a Highlight Reel 3. Declinism : The "Kids These Days" Bias


Good observation.

These seem to have an effect, alone or together, but all other things being equal it might just be because everything is just more expensive now.

Which effect is bigger may not always be the same, sometimes expense is not the main factor but it can go neck-and-neck against almost anything.


I found an Insecure Direct Object Reference(IDOR0 security issue that led to leaking GST challans (receipts) of all the 11.8M registered taxpayers. Here's the full story alongwith a video PoC.

Note: No personal data was ever shared or harvested. This was responsibly disclosed to the authorities through proper channels and only after the disclosure timeline (120 days) was it published in the online media.


I've started this series on online privacy to teach people some of the good online cybersecurity hygiene, that can help them keep safe.


This is my first attempt at recreating a bug from its test case, feedback is highly appreciated.

RCE in git By cloning a repo - 'git clone --recursive <git_repo>' , your machine could be compromised. Works on MacOS and Windows Fix - Upgrade git Technical walkthrough and how you can reproduce it


Not expected this from a security company :P Please fix/update your certs :)

``` https://foundationalsec.com/

Unable to communicate securely with peer: requested domain name does not match the server’s certificate.

HTTP Strict Transport Security: false

HTTP Public Key Pinning: false

```

Screenshot here -> https://postimg.cc/gallery/cdQsCzd


In this blog we will see a step-by-step guide of what goes behind a successful pentest. This not only includes the technical aspects but also the business and legal aspects of it.

If you’re tasked with the responsibility for getting your organisation's app or website's pentest done, this blog would definitely help you navigate the waters easily.


Hello Everyone Back with another #exploitation 4th part in the #GraphQL Exploitation series -

1⃣ Deep Recursion Attack - Attack & Defend (max depth)

2⃣ GraphQL Introspection

Thanks to Dolev Farhi for the awesome DVGA

#bugbounty #cybersecurity


SEEKING WORK | Remote : Yes | Location: India

Area of expertise : App Security ( Web & Mobile ), Infrastructure Security etc.

Technologies: Python, Go, Terraform, AWS, GCP, Vault, CIS Benchmarks, Docker, kubernetes ( k8s ), gitlab CI/CD & github actions, Jenkins, ELK

Résumé/CV: https://aseemshrey.in/resume.html

Email: hi@aseemshrey.in

Blog : https://aseemshrey.in/

YouTube : HackingSimplified : https://www.youtube.com/channel/UCARsgS1stRbRgh99E63Q3ng

I build scalable security solutions as well, for my current employer as well as in a previous startup where I built a lot of systems from scratch.

I teach on my youtube channel hackingsimplified , about cybersecurity stuff.

Available for consulting as well.


Location: India

Remote: Yes

Willing to relocate: Yes

Technologies: Python, Go, Terraform, AWS, GCP, Vault, CIS Benchmarks, Docker, kubernetes ( k8s ), gitlab CI/CD & github actions, Jenkins, ELK

Résumé/CV: https://aseemshrey.in/resume.html

Email: hi@aseemshrey.in

Blog : https://aseemshrey.in/

YouTube : HackingSimplified : https://www.youtube.com/channel/UCARsgS1stRbRgh99E63Q3ng

My area of expertise App Security ( Web & Mobile ), Infrastructure Security etc.

I build scalable security solutions as well, for my current employer as well as in a previous startup where I built a lot of systems from scratch.

I teach on my youtube channel hackingsimplified , about cybersecurity stuff.

Available for consulting as well.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: