- Hive Five
- Posts
- 🐝 Hive Five 142 - Hacking Full Time
🐝 Hive Five 142 - Hacking Full Time

Hi friends,
Greetings from the hive!
“You do not rise to the level of your goals. You fall to the level of your systems.”
Let’s take this week by swarm!
🐝 The Bee’s Knees
SQL Injecting Beyond Strict Filters: Union without comma. Can it be done? IppSec dives in. YOUTUBE
Bridging the Gap: Integrating Digital Forensics with Open-Source Intelligence (Keynote). Explore how Artificial Intelligence and Machine Learning (AI/ML) can supercharge the efficiency of our analysis. YOUTUBE
Hacking Full Time with NahamSec. This blog post gives you insight into his career, transitioning to working for himself, and he even discusses planning, finances, and execution. NAHAMSEC| VIDEO
Patrik launched an open-source Practical Bug Bounty project. The platform is designed to help users discover bug bounty-related videos, organized into categories, offering a curriculum-like experience. GITHUB
The Cybears open-sourced all of the challenges from the Cybears 2023 CTF. You can find all of the code and walkthroughs here. GITLAB
Which Bee’s Knees was your favorite? Reply with the number (#1, #2, #3, #4, or #5)! 👉 Share on X
️💪 Sponsor
Sponsor the Hive Five and reach a highly engaged community of engineers, security researchers, and ethical hackers who are at the forefront of the industry.
🔥 Buzzworthy
✅ Changelog
GreyNoise released Sift, an automated treat hunting experience curating a report of new + interesting traffic observed by GreyNoise sensors daily after doing much of the analysis and triage work itself. TWITTER
gwen001/cloudflare-origin-ip v1.1.4 tries to find the origin IP of a webapp protected by Cloudflare. GITHUB
j3ssie/metabigor v1.2.6 is an intelligence tool, its goal is to do OSINT tasks and more but without any API key. GITHUB
jq 1.7 is its first new release in five years! The project has moved from a solo maintainer to a new team with a dedicated GitHub organization. A ton of new features in this release. GITHUB
FleexSecurity/fleex v2.0 brings significant updates and improvements to Fleex. Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads. GITHUB
📅 News
Truffle Security is holding a Detector Competition with great prizes for HackToberFest. TWITTER
You won’t be able to use Discord as your filehost by the end of the year. ALICORN
Kuromatae launched his new blog. You will find here all the things they want to share like write-ups and tools. HKS
The AI Summit is underway, Day 1 and Day 2 will be livestreamed (10/9 + 10/10) and recorded. YOUTUBE
🎉 Celebrate
NahamSec reached 100K subscribers on YouTube. Congrats! TWITTER
Abiral hit 20K reputation points on HackerOne. Let’s go! TWITTER
Sentry has funded 1,922 of their 2,015 direct dependencies. They have given more than $300K to open source software since March 2021. Amazing! TWITTER
Meg is off on another backpacking adventure. Have fun! TWITTER
Wlayzz joined the top 100 hacker on YesWeHack. Woot! TWITTER
💰 Career
Return to office is bullshit and everyone knows it: “Trust arrives on foot, but leaves on horseback.” — Dutch proverb. SOATOK
When it comes to business, many developer-turned-small-business-owners, are really quite green. Jeffrey shares his journey and reassures you that you’ll figure it out. LARACASTS
The $645,099 business pivot. Life can come atcha pretty quickly. In January of 2023 RadReads got hit by a quadruple-whammy. RADREADS
⚡️ Community
📰 Read
Exploring the human side of cybersecurity, this post delves into personal stories, industry challenges, and the urgent need for innovation and collaboration. “Take risks, innovate fearlessly, stay human. The future needs you.” HAKLUKE
A Real OSINT Case: Uncovering a Hacker Group. OSINT investigations are like intricate puzzles that require meticulous research, often leading to a maze of different paths. SOCIALLINKS
Thousands of GitHub Comments Leak Live API Keys. Unlike accidentally committing a secret to git, GitHub users are inserting passwords into text boxes and publicly posting them for all to see. TRUFFLESECURITY
Translating Latin demonology manuals with GPT-4 and Claude. LLM-assisted translation and analysis of primary sources will end up being an extremely useful tool for historical researchers and translators. But it will be just that: a tool. Not a replacement. SUBSTACK
💡 Tips
🍯 Follow
Awesome accounts to follow. Randomly selected from my curated Twitter lists.
@moxie | Moxie Marlinspike | Founder @signalapp.
@cybersecmeg | meg west | CISSP | CCSP | MSc Cybersecurity | X-Force Cybersecurity Incident Responder @IBMSecurity | Tweets about dogs & tacos & APTs, oh my.
@gkhck_ | 0x496 | Senior Information Security Engineer.
@Nephastieke | Nephastieke | Founder of CyberSKool, Pen Tester, awesome female superhero! Belgian geek and beer lover. Part-time godzilla.
@_staaldraad | @[email protected] | Security researcher and breaker of things.
🚀 Productivity
10 ONE-MINUTE Email Habits for Productivity. YOUTUBE
How a seasoned Obsidian user would begin again in Obsidian. YOUTUBE
Bryan’s fully automated daily note review system in Obsidian — I’ve implemented this immediately. YOUTUBE
Use ChatGPT to set clear learning goals that exceed most expensive coaching advice. TWITTER
Vitalik’s 40-liter backpack travel guide. VITALIK
Get $200 to try DigitalOcean. Level up your bug bounty game with the ultimate VPS solution. It’s my go-to for all recon, automation, and even VPN needs. Get access to a comprehensive range of cloud resources, all at an affordable price.
🌐 Technology
Can You Use a Laptop as a Home Server? Wolfgang finds out. YOUTUBE
Neovim & Extensibility is TJ’s recent talk from Jane Street, filled with live demos and examples. YOUTUBE
“The intelligence coup of the century” - U.S. and German intelligence agencies partnered on a scheme to dupe dozens of nations into buying rigged encryption systems — taking their money and stealing their secrets. WASHINGTONPOST
A list of the lines of codes of popular apps and games, such as WoW 5.5 million vs Telegram’s 50K — I don’t know where these numbers are from, so take it with a grain of salt. TWITTER
This one made me chuckle, Dion asks: “What is the name for the size a company gets when the company laptop becomes fully managed and you can’t use the apps that have made you productive no mo?” TWITTER
🧠 Wisdom
Steph on to stop limiting yourself because your concern of other people’s vision of you. TWITTER
Alex on the cons of building on platforms you have zero control over. TWITTER
Steve Jobs on memento mori: “[…] avoid the trap of thinking you have something to lose.” TWITTER
Every year, David reads fewer and fewer books, but goes deeper and deeper on the books he does choose — Do less, better. TWITTER
“No one’s complaining” so it fine. “No one” really means “no one has complained to you”. It doesn’t mean no one is complaining to someone else, somewhere else. HEY
💛 Cross-pollination
These are the best and worst banks to use according to “How to Get Rich” host Ramit. TWITTER
Ask HN: What software did you purchase that positively impacted your family life — Answers range from Kagi (paid search engine) to Google Photos. YCOMBINATOR
“I realized then the importance of selling. That no matter what you have—if you have a podcast, if you have a movie, if you have a painting, if you have a car, a technology, a medicine, whatever it is—if people don’t know about it, you have nothing.” — @schwarzenegger INSTAGRAM
When something mildly interesting happens Nick makes a note of it in his phone. Once the list reaches 10 things, he calls his grandfather — What a great way to make notes actionable! TWITTER
🐝 Fact
If you suddenly acquire bees that have little or no food, you can feed them during the winter by buying candy or fondant, often in large blocks, available from equipment suppliers or from a home bakery. The easiest way to cut off a large slice is to use a wet knife and keep wetting it as you cut. Remove the hive’s inner cover and place the candy on top of the frames, directly over the cluster of bees. Cover it with something like a plastic food tray followed by insulation such as news-paper. Surround it with an empty super and replace the inner cover and cover.
This bee fact is brought to you by The Beekeeper’s Bible: Bees, Honey, Recipes & Other Home Uses.
Become a Premium member to read the rest.
Become a paying supporter of Hive Five gets you access to this post and other premium-only content.
Already a paying subscriber? Sign In.
Premium perks:
- • Join a private Discord COMMUNITY: Engage in chat, uplift one another, grow together, and explore shared interests.
- • Access to COMPLETE HIVE ARCHIVE: Unlock a treasure trove of tools, resources, videos, and audio, catering to all your needs.
- • EXCLUSIVE & BONUS content: Delve into hundreds of curated links that didn't make it into the newsletter.
- • MEMBER-ONLY events: Take part in digital meetups, focus sessions, and more.
- • Deep DISCOUNTS on paid content.
- • Experience continuously added NEW BENEFITS.