I just confirmed that yes, @brave browser's Tor mode appears to leak all the .onion addresses you visit to your DNS provider
reddit.com/r/netsec/comme…
HTTP is supposed to be stateless, but sometimes... it isn't! Some servers create invisible vulnerabilities by only validating the first request on each TCP/TLS connection. I've just published a Custom Action to help you detect & exploit this - here's a narrated demo:
Manually testing for IDOR can get pretty tedious... so Backslash Powered Scanner will now recognise and flag iterable inputs!
If you're interested in the background and philosophy behind BPS, check out the presentation:
portswigger.net/research/backs…
A few people had issues figuring out how to use HTTP Request Smuggler, so I've posted step-by-step instructions on how to use it to solve an online @WebSecAcademy lab:
How to find a HTTP/2 playmate:
1. Install Burp 2020.8 and HTTP Request Smuggler
2. Configure scope & browse some bug-bounty sites
3. Go to proxy, hide out of scope traffic
4. Ctrl+A, right click->Extensions->pick your scan
5. Wait
portswigger.net/research/http2
I had planned to present at Black Hat and DEF CON in person, but on Tuesday morning my baby daughter was born six weeks earlier than expected! So, not the ideal time to fly to Vegas. Thankfully she and her mother are recovering well. Hope you enjoyed the recordings, thanks for
Due to unexpected personal circumstances, my presentations at Black Hat and DEF CON will be virtual rather than in person. I’m a bit gutted to let people down but this is the best I can do.