HADESS

1K posts

HADESS banner
HADESS

HADESS

@Hadess_security

Cybersecurity Company that helps any team and developers to be growth and secure. #hadess #redteam #pentest #appsec #asm

Germany 加入时间 Haziran 2020
1 关注3.9K 粉丝
HADESS
HADESS@Hadess_security·
DevOps City Your DevOps infrastructure is a city. Everything runs smooth until an incident hits. You're the mayor. Find what broke, fix it. This round: CI/CD pipeline security. #scenario=devops-pipeline" target="_blank" rel="nofollow noopener">hadess.io/games/devops-c… #game #devops #cicd #devsecops
HADESS tweet media
English
0
1
7
187
HADESS
HADESS@Hadess_security·
@visions3c Brilliant💎 Map all the skills already mapped to more than 378 career path. What’s needed to build a career? Personality? Paths and goals? Hard learning curve stuff? Certifications? Market size? Anything else? All added and waiting for folks. Let’s enroll as you’re interesting 😉
English
0
0
2
65
VisionSEC
VisionSEC@visions3c·
@Hadess_security 499 skills is overwhelming without structure. The value isn't the list—it's the path. Most people get stuck collecting certs instead of building depth. Pick a lane, master it, then expand. T-shaped skills > scattered knowledge.
English
1
0
0
100
HADESS
HADESS@Hadess_security·
Stop Googling cybersecurity skills. +499 infosec skills, structured paths, career mapping; all in one place. This is how you actually learn. career.hadess.io #infosec #job #career
English
1
1
16
2.4K
HADESS
HADESS@Hadess_security·
Cybersecurity Career Coach that Turns Rookies into Pros. After 7+ years creating content and collaborating with top security engineers & researchers, we've seen the same gaps over and over: How to actually start and How to keep growing we built: career.hadess.io #job
HADESS tweet media
English
2
1
3
177
HADESS 已转推
Hazard Lab
Hazard Lab@thehazardlab·
CVE-2025-9959: smolagents Python Sandbox Escape hazardlab.substack.com/publish/post/1… Python sandbox implementations often focus on blocking dangerous attribute access patterns like `obj.__class__` but forget that the same introspection is achievable through method invocation. #python #cve
Hazard Lab tweet media
English
0
3
7
868
HADESS
HADESS@Hadess_security·
Blocked QUIC → insecure fallback risk
HADESS tweet media
English
0
0
2
160
HADESS
HADESS@Hadess_security·
WebRTC STUN Amplification Attack
HADESS tweet media
English
1
0
3
184
HADESS
HADESS@Hadess_security·
𝗦𝗲𝗰𝘂𝗿𝗲 𝗯𝘆 𝗗𝗲𝘀𝗶𝗴𝗻 𝗥𝗲𝗮𝗹‐𝗧𝗶𝗺𝗲 𝗖𝗼𝗺𝗺𝘂𝗻𝗶𝗰𝗮𝘁𝗶𝗼𝗻 — 𝗔𝘁𝘁𝗮𝗰𝗸 & 𝗗𝗲𝗳𝗲𝗻𝘀𝗲 𝗣𝗹𝗮𝘆𝗯𝗼𝗼𝗸 open.substack.com/pub/devsecopsg… Donald 👱‍♂️, a developer and chaos wrangler, watched PacketPete, our mischievous red-teamer, go wild on his real-time stack 👇
HADESS tweet media
English
1
3
6
340
HADESS
HADESS@Hadess_security·
𝗦𝗲𝗰𝘂𝗿𝗲 𝗯𝘆 𝗗𝗲𝘀𝗶𝗴𝗻 - 𝗘𝘅𝗲𝗰𝘂𝘁𝗶𝗼𝗻 𝗮𝗻𝗱 𝗙𝗶𝗹𝗲 𝗠𝗮𝗻𝗮𝗴𝗲𝗺𝗲𝗻𝘁 open.substack.com/pub/devsecopsg… Syd, a senior Spring developer, trusted her file upload service with basic extension validation. "Only .pdf and .jpg files allowed," she thought. #appsec #devsecops
HADESS tweet media
English
0
3
10
415
HADESS
HADESS@Hadess_security·
🔴 DOM Clobbering Prevention Property injection attacks → namespace pollution → input validation → prototype pollution guards.
HADESS tweet media
English
0
0
1
123
HADESS
HADESS@Hadess_security·
🔴 CSRF Protection Framework State-changing requests → token validation bypass → double-submit cookies → SameSite enforcement.
HADESS tweet mediaHADESS tweet media
English
1
0
1
127
HADESS
HADESS@Hadess_security·
Secure by Design Frontend Security open.substack.com/pub/devsecopsg… Imagine Frontend used dangerouslySetInnerHTML to render user comments without sanitization. An attacker crafted malicious JavaScript that stole authentication tokens from other users' browsers. Learn more 👇
HADESS tweet media
English
1
3
6
425