- Hive Five
- Posts
- π Hive Five 168 - They Want Your Data? EFF That.
π Hive Five 168 - They Want Your Data? EFF That.
HTTP Toolkit, 60 Hacking Commands You Need to Know, AI music platform Suno is just the beginning, and more...
Hi friends,
Greetings from the hive!
Some personal news, Iβm going to touch grass. Starting next week, I'm taking two weeks off. In these last three years, I believe I've only missed one week of creating the newsletter.
Also, to no surprise, I can't recall the last time I took a vacation. So, it's finally time to rest and recharge a bit.
Let's take this week by swarm!
π The Bee's Knees
HTTP Toolkit is a beautiful & open-source tool for debugging, testing and building with HTTP(S) on Windows, Linux & Mac. MORE
Reverse engineering Bandcamp authentication protocol: Did you know that the albums you purchase on Bandcamp can disappear from your collection without notice? MORE
Learning in public with Personal Knowledge Management. Make what you learn observable and exposing your process, rather than your result, early and often. MORE
60 Hacking Commands You Need to Know: Discover essential hacking commands and techniques. MORE
Jack Rhysider emphasizes that privacy is worth rebelling over, underscoring the importance of maintaining digital rights and freedoms. MORE
οΈπͺ Sponsor
Every week, thousands of hackers immerse themselves in my free newsletter for the best security resources, tech optimizations, and productivity improvements. To sculpt their dream lifestyles.
These high achievers are fiercely committed to their personal growth. It's not just about getting ahead - it's about taking them by swarm!
From a reader: βMy boss thinks Iβm smart (Iβm not) but itβs really because of my secret weapon the Hive Five.β
π― My work
π₯ Buzzworthy
β Changelog
Nuclei Templates v9.8.0 introduces the new JS protocol. This makes it simpler to incorporate network checks through the newly introduced JS modules. MORE
Arjun 2.2.5 release: Skip scanning of non-webpage urls and various bug fixes. MORE
xnlinkfinder v6.0 release with various fixes and improvements. MORE
π News
Kagi announced the launch of Kagi Small Web, promoting the non-commercial part of the web, crafted by individuals to express themselves or share knowledge without seeking any financial gain. MORE
Google introduces Jpegli: A New JPEG Coding Library. It offers enhanced capabilities and a 35% compression ratio improvement at high quality compression settings. MORE
The Youth Challenge program at DEF CON is designed to provide a memorable learning and networking experience for young attendees. MORE
Swyx suggests that the AI music platform Suno is just the beginning of this year's advancements in the field, hinting at more exciting developments to come. MORE
Monke introduces Burp2Caido, a tool to migrate Burpsuite HTTP history to Caido, providing a useful resource for security professionals. MORE
π Celebrate
g0lden's first affiliate stream on Twitch. Congrats! MORE
Shubs shares his impressive 8-year journey navigating Uber's bug bounty program, a testament to his dedication and skill! MORE
Congratulations to all the winners of the YesWeHack Hack Me I'm Famous 2 event. MORE
HackerOne has released the 2024 Brand Ambassadors. Exciting! MORE
π° Career
Vermeer is hiring a Cybersecurity Risk and Compliance Manager. MORE
What to do when you've been reorg'd. Jacob shares their experience being through close to a dozen reorgs. MORE
An open position for a Cybersecurity Specialist at the Department of Homeland Security. MORE
A product marketing manager in Spain created an outstanding video to stand out in the job market, breaking LinkedIn in the process. MORE
Learn effective strategies for negotiating your salary, including insights from Chloe's personal experience. MORE
β‘οΈ Community
Monke had some amazing days in Tokyo and shares their love for the city. MORE
Paul has found a way to use Nuclei to audit Chrome Extensions, demonstrating the tool's versatility and potential applications. MORE
Paul on the potential of the ffufw tool, praising its capabilities and suggesting the community could enhance its functionality. MORE
Blaklis enjoyed the latest YesWeHack Live Hacking Event, indicating the value of such community-driven initiatives. MORE
Damian has found his new tech stack for the year, consistent of Laravel, SingleStore, and MS Garnet. MORE
π° Read
The journey of how Compass Security attended Pwn2Own Toronto 2023 and what they've learned. MORE
Bypassing DOMPurify with good old XML. MORE
Joseph believes AI Agents will outhack humans, as there's a finite number of known attack vectors to use when hacking something. MORE
Ryan shares three behaviors that help engineers reach the Staff level: an ownership mindset, focusing on impact, and ensuring project success. MORE
π I believe the same goes for driving. A human is inherently limited, while a AI wouldn't have those limitations.
π‘ Tips
TIL that GitHub Support can unfork a repo for you. MORE
A thread offers beginner questions and veteran advice for those interested in getting into cybersecurity, providing a valuable resource for aspiring professionals. MORE
Mason emphasizes that N/A's, dupes, VDP findings, or lower payouts can still be considered progress in the bug bounty journey. MORE
A thought-provoking tweet by Jordan emphasizes the importance of acting on acquired knowledge to avoid being complicit in one's own demise. MORE
π Follow
Awesome accounts to follow. Randomly selected from my curated Twitter lists.
@garethheyes | JavaScript for hackers: Learn to think like a hacker.
@brxxnh1 | brxxn (security) | views and opinions are those of a wild ostrich on the loose.
@ryancdotorg | Ryan Castellucci | Hacker of binaries. Technically sophisticated antics. Conference speaker.
@yongfook | Jon Yongfook | SaaS entrepreneur | Image Automation | Browser Automation.
π Productivity
Discover how to use ChatGPT to quickly structure and outline a powerful presentation. MORE
GmailShortcutBlocker is a Chrome Extension by swyx that blocks clicks on Gmail elements that have keyboard shortcuts and shows the shortcut in a tooltip. MORE
Process Over Goals is a workshop geared towards professionals to develop workflows to accomplish more in less time, and build strategies to push through when motivation is low. MORE
People share simple yet delightful workflow tips, highlighting the value of small, practical innovations. MORE
An infographic showcasing 15 methods to improve time management. MORE
Get $200 to try DigitalOcean. Level up your bug bounty game with the ultimate VPS solution. It's my go-to for all recon, automation, and even VPN needs. Get access to a comprehensive range of cloud resources, all at an affordable price.
π Technology
(Almost) Every infrastructure decision Jack endorses or regrets after 4 years running infrastructure at a startup. MORE
Google Is Killing Retro Dodo and Other Independent Sites by changes to their algorithm, ads, presenting (stolen) content, and more. MORE
WhatTheDuck is an open-source web application built on DuckDB, designed to allow users to upload CSV files, store them in tables, and perform SQL queries on the uploaded data. MORE
Why Mat Doesn't Like Git More. MORE
HackerNews answers what the current gold standard of running an LLM locally is. The top comment recommends going to the /r/LocalLLaMA subreddit, as they usually have a "best current local model" thread pinned. MORE
π I agree with Mat that Git is often overkill and even challenging to use beyond the basics. For instance, as Mat mentioned, I even have an alias for undoing and reverting to the current commit: git reset --hard HEAD
π§ Wisdom
Anne-Laure offers great advice on turning learning into something new for deeper understanding and better memory, a valuable tip for personal growth. MORE
One Important Lesson From A Zen Master: How your inner world creates your outer world. MORE
Is it still worth it to learn to code? TJ explores the value and viability of learning to code in the current landscape. MORE
Mark Manson emphasizes the importance of action over just intellectual understanding, as the latter can create a false sense of progress without actual change. MORE
Surveillance you didn't know about: The truth about Bank Privacy. Naomi walks you through how we built a financial surveillance system that no one really understands the extent of. MORE
π Cross-pollination
In honor of 404 Day, people shared their favorite 404 error pages. MORE
Domino's π as a GitHub Action. MORE
Why Tynan Quit Chipotle and What He Eats Instead β Although this may come over as petty, I understand. MORE
How Nick learned to stop hating and love museums. MORE
Dive into the fascinating network of Wikipedia, uncovering the most interesting, bizarre, and unique articles on the platform. MORE
π According to PwC, 1 in 3 customers will leave a brand they love after just one bad experience, while 92% would completely abandon a company after two or three negative interactions.
π Quote
"Do not speak badly of yourself, for the warrior that is inside you hears your words and is lessened by them."
Get $200 to try DigitalOcean. Level up your bug bounty game with the ultimate VPS solution. It's my go-to for all recon, automation, and even VPN needs. Get access to a comprehensive range of cloud resources, all at an affordable price.
π₯ Now, letβs get into the good stuff. I cover the latest tools, in-depth resources, and the best things I've watched and listened to this week.
Subscribe to Premium to read the rest.
Become a paying subscriber of Premium to get access to this post and other subscriber-only content.
Already a paying subscriber? Sign In.
A subscription gets you:
- β’ Join a private Discord COMMUNITY: Engage in chat, uplift one another, grow together, and explore shared interests.
- β’ Access to COMPLETE HIVE ARCHIVE: Unlock a treasure trove of tools, resources, videos, and audio, catering to all your needs.
- β’ EXCLUSIVE & BONUS content: Delve into hundreds of curated links that didn't make it into the newsletter.
- β’ MEMBER-ONLY events: Take part in digital meetups, focus sessions, and more.
- β’ Deep DISCOUNTS on paid content.
- β’ Experience continuously added NEW BENEFITS.