Ethical Hacking Mission Control
This live lab is a safe space for defenders, red teamers, and curious hackers to sharpen their tradecraft using real tooling and real telemetry. Every article, lab module, and intel briefing is curated to help you practice responsible disclosure, grow your skill set, and support the security community.
FBI arrests another suspected ShinyHunters hacker after agency breach
Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto
Germany arrests alleged core Qilin ransomware member after extradition
How to keep AI agents within their permissions
Max severity SonicWall SMA1000 flaw now exploited in attacks
Man admits to running network of 15,000 money mules for cybercriminals
Microsoft: Outdated Windows devices will stop receiving security updates
Citrix warns admins to patch new NetScaler RCE flaw immediately
Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland
FBI disrupts Chinese hacking tools used to breach critical infrastructure
Ransomware attack disrupts Japan's IDCF Cloud used by govt clients
Low-cost Android phones ship with residential proxy malware
FakeGit malware campaign returns with 17,610 malicious GitHub repos
Cisco warns of critical flaws allowing Nexus switch takeover
OAuth grants pile up faster than you can review them. Here's how to keep up.
Uranium crypto exchange hacker convicted for stealing $53 million
Microsoft Teams to get support for third-party deepfake detection tools
ASOS links data breach to social engineering attack, credential theft
Bug Bounty Radar
Hand-picked programs with live scope and standout rewards to help you focus your next responsible disclosure run.
FastAPI Cloud
HackerOne • Updated 2024-05-18
Prototype pollution in async workers and GraphQL stitching flaws.
Scope: api.fastapicloud.com, *.fastapicloud.com
Program brief →Supply Chain Monitor
Bugcrowd • Updated 2024-05-22
Dependency confusion, pipeline breakout, and artifact poisoning.
Scope: *.scm.dev, api.scm.dev
Program brief →Secure Notes
Intigriti • Updated 2024-05-17
OAuth misconfigurations, storage isolation, and advanced XSS chains.
Scope: app.securenotes.io, api.securenotes.io
Program brief →OpenTelemetry Hub
YesWeHack • Updated 2024-05-20
Collector escapes, tenant isolation bugs, and SSRF via exporters.
Scope: *.otelhub.dev
Program brief →