Profile picture of EdOverflow

Web developer, security researcher, Senior Pentester at Cure53, passionate swimmer, and author of security.txt (RFC 9116). I write about bug bounty, open source, and security—often intertwining the subjects. You can learn more about me and my work here.

An analysis of logic flaws in web-of-trust services

#bug bounty #security #logic flaws

The math behind bug bounties — A formula to calculate bounty amounts

#math #bug bounty

Operation FGTNY 🗽 - Solving the H1-212 CTF

#HackerOne #CTF

Bypassing Server-Side Request Forgery filters by abusing a bug in Ruby's native resolver

#Ruby #bug bounty

A lightweight reconnaissance setup for bug bounty hunters

#bug bounty

Broken Link Hijacking - How expired links can be exploited

#broken link hijacking #security

On-platform GitHub Reconnaissance

#GitHub #reconnaissance

Capture the flag: reversing the passwords (Solutions)

#HackerOne #CTF

GitHub for Bug Bounty Hunters

#GitHub #bug bounty #reconnaissance

Bug Bounty FAQ

#bug bounty