Claude Code went hunting blind – no hints 🧐
It mapped the app, tested multiple attack paths and found an impressive request smuggling bug 🔍
But proving impact? Still on the hunter 👀
Our guide to Claude Code for bug hunting 👇
Vegas, you were fun! 🎲👾
From @BSidesLV to #VulnerabilityVibes and @BugBountyDEFCON, it was a packed week of hacking, talks, beers and familiar faces.
Thanks to everyone we met along the way 💜
A few snapshots 👇
Missed PimpMyCaido #1? 👀
See how DOMLogger++ by @kevin_mizu captures dangerous JavaScript sink calls in real time, then enriches stack traces to reveal the path from user-controlled input to a potential DOM XSS!
Read the case study 👇
From media studies to cybersecurity, @sunsh1nefact0ry shows where trying something new can lead ✨
She shares what keeps her hooked on hacking, how Bug Bounty differs from CTFs, her approach to IoT targets and advice for beginners 👇
AI can be a fantastic teammate for Bug Bounty hunters! 🤖
Claude Code mapped attack surfaces, spotted suspicious behaviour and uncovered real vulnerability paths.
But it still needed a human to validate the findings, prove the impact and guide it in the right direction 👀
See