ZeroDay Test

ZeroDay Test Don’t Wait for a Breach || Let's Secure your Digital Assets. Bangladesh's First Bug Bounty Platform 🇧🇩

🚨 একজন Developer হিসেবে আপনি কি নিশ্চিত যে আপনার Application-এ কোনো Security Flaw নেই?বাস্তবতা হলো, অধিকাংশ Security Vul...
16/06/2026

🚨 একজন Developer হিসেবে আপনি কি নিশ্চিত যে আপনার Application-এ কোনো Security Flaw নেই?

বাস্তবতা হলো, অধিকাংশ Security Vulnerability Hacker-রা খুঁজে পাওয়ার আগে Developer-দের চোখেই পড়ে না।

প্রতিনিয়ত Web Application, Mobile App এবং API-তে এমন অনেক Security Issue পাওয়া যাচ্ছে, যেগুলো থেকে Data Leakage, Account Takeover, Business Logic Abuse কিংবা Financial Loss পর্যন্ত হতে পারে।

এই বিষয়গুলোকে সামনে রেখে দেশের অন্যতম শীর্ষস্থানীয় সাইবার সিকিউরিটি সেবা প্রদানকারী প্রতিষ্ঠান Byte Capsule আয়োজন করছে " ZeroDay Test presents Free Online Developer Security Workshop", যেখানে আমরা বাস্তব উদাহরণ এবং Live Demonstration-এর মাধ্যমে দেখাবো -

🔐 Attackers কীভাবে Vulnerability খুঁজে বের করে
🔐 Developers-এর সবচেয়ে Common Security Mistakes
🔐 Recent Web Application Vulnerabilities
🔐 Secure Development Best Practices
🔐 Client-এর কাছে Application Deliver করার আগে কী কী Security Check করা উচিত

📅 Date: Friday, 19 June 2026

🕖 Time: 7:00 PM
💻 Platform: Zoom

🔗 Join Link পেতে অনুগ্রহ করে ফর্মটি ফিলআপ করুন আগামী ১৮ই জুনের মাঝেই - https://forms.gle/Kxeab1VQaQsTEXgw6

এই সেশনটি বিশেষভাবে Web Developer, Mobile App Developer, Software Engineer, CTO, Tech Lead, Agency Owner এবং Technology Professional-দের জন্য।

🎯 লক্ষ্য একটাই আরও Secure Application তৈরি করা এবং Security Issue Production-এ যাওয়ার আগেই শনাক্ত করা।

Interested? Comment "Interested" or send me a message.

🎉 We are excited to announce that   has officially launched its Vulnerability Disclosure Program (VDP) on ZeroDay Test. ...
15/06/2026

🎉 We are excited to announce that has officially launched its Vulnerability Disclosure Program (VDP) on ZeroDay Test.

By implementing a responsible vulnerability disclosure process, AxyMart is taking a proactive step toward enhancing the security of its digital assets and protecting its users from emerging cyber threats.

We appreciate 's commitment to security, transparency, and continuous improvement. Through this program, security researchers can responsibly report vulnerabilities, helping strengthen the platform before potential attackers can exploit security weaknesses.

Together, we are building a stronger culture of responsible disclosure and cybersecurity resilience.

🔐 Security is a continuous journey, and responsible disclosure is an essential part of that journey.

🚀 We are excited to announce that   has officially launched its Vulnerability Disclosure Program (VDP) on ZeroDay Test T...
14/06/2026

🚀 We are excited to announce that has officially launched its Vulnerability Disclosure Program (VDP) on ZeroDay Test

This initiative reflects Hopenity's commitment to proactive cybersecurity and responsible vulnerability disclosure. Through this program, security researchers can responsibly report security vulnerabilities, helping strengthen the security of Hopenity's digital assets and protect its users.

We appreciate Hopenity's trust in fostering a security-first culture and taking a proactive step toward improving cyber resilience.

Together, we are building a stronger and more responsible vulnerability disclosure ecosystem for Bangladesh and beyond. 🔐

মাত্র ৪ দিনেই নিষিদ্ধ Claude-এর নতুন AI! 😳মাত্র ৪ দিন আগে Anthropic তাদের সবচেয়ে শক্তিশালী AI মডেল Claude Fable 5 এবং Cl...
14/06/2026

মাত্র ৪ দিনেই নিষিদ্ধ Claude-এর নতুন AI! 😳

মাত্র ৪ দিন আগে Anthropic তাদের সবচেয়ে শক্তিশালী AI মডেল Claude Fable 5 এবং Claude Mythos 5 উন্মুক্ত করেছিল। কিন্তু অবিশ্বাস্যভাবে লঞ্চের মাত্র কয়েক দিনের মধ্যেই মার্কিন সরকারের নির্দেশে এই মডেলগুলোর অ্যাক্সেস বন্ধ করে দিতে বাধ্য হয়েছে কোম্পানিটি।

২০২৬ সালের ৯ জুন Anthropic তাদের নতুন "Mythos-Class" AI মডেল উন্মোচন করে। Fable 5 ছিল সাধারণ ব্যবহারকারীদের জন্য নিরাপদ সংস্করণ, আর Mythos 5 ছিল সীমিত সংখ্যক সাইবার ডিফেন্ডার ও ক্রিটিক্যাল অবকাঠামো প্রতিষ্ঠানের জন্য উন্নত সংস্করণ।

কিন্তু ১২ জুন মার্কিন সরকার জাতীয় নিরাপত্তার অজুহাতে Anthropic-কে একটি নির্দেশনা দেয়, যেখানে বলা হয় Fable 5 ও Mythos 5 কোনো বিদেশি নাগরিক ব্যবহার করতে পারবে না—সে যুক্তরাষ্ট্রের ভেতরে থাকুক বা বাইরে।

সমস্যা হলো, বাস্তবে কে বিদেশি নাগরিক আর কে নয় তা তাৎক্ষণিকভাবে যাচাই করা কঠিন। ফলে Anthropic বাধ্য হয়ে মডেল দুটির অ্যাক্সেস সবার জন্যই বন্ধ করে দেয়।

সরকারের উদ্বেগ কী ছিল?

Anthropic-এর দাবি অনুযায়ী, সরকার মনে করে Fable 5-কে একটি নির্দিষ্ট "জেইলব্রেক" কৌশলের মাধ্যমে নিরাপত্তা সীমাবদ্ধতা বাইপাস করা সম্ভব। এই পদ্ধতি ব্যবহার করে কিছু পরিচিত সফটওয়্যার দুর্বলতা শনাক্ত করা গিয়েছিল।

তবে Anthropic বলছে,

✅ এটি কোনো "Universal Jailbreak" নয়
✅ আবিষ্কৃত দুর্বলতাগুলো নতুন নয়
✅ GPT-5.5 সহ অন্যান্য পাবলিক AI মডেল দিয়েও একই ধরনের ফলাফল পাওয়া সম্ভব
✅ এর মাধ্যমে Mythos-নির্দিষ্ট কোনো অতিরিক্ত ক্ষমতা পাওয়া যায়নি

Anthropic প্রকাশ্যে জানিয়েছে যে তারা সরকারের নির্দেশ মেনে চললেও সিদ্ধান্তটির সাথে একমত নয়।

কোম্পানির ভাষ্য মতে - যদি এমন সামান্য বা সীমিত জেইলব্রেকের কারণেই কোনো AI মডেল প্রত্যাহার করা হয়, তাহলে ভবিষ্যতে প্রায় সব Frontier AI মডেলের উন্নয়ন ও উন্মোচন বন্ধ হয়ে যেতে পারে।

তারা আরও জানিয়েছে যে Fable 5 উন্মোচনের আগে হাজার হাজার ঘণ্টার Red Teaming, Security Testing এবং সরকারি সংস্থার সাথে যৌথ মূল্যায়ন করা হয়েছিল।

সাইবার সিকিউরিটি কমিউনিটির জন্য এই ঘটনাটি AI ইতিহাসের একটি গুরুত্বপূর্ণ মাইলফলক হতে পারে।

আগে AI নিয়ন্ত্রণ মূলত GPU, চিপ এবং হার্ডওয়্যার রপ্তানির উপর কেন্দ্রীভূত ছিল। এখন প্রথমবারের মতো একটি Frontier AI Model-এর অ্যাক্সেস সরাসরি জাতীয় নিরাপত্তার কারণে সীমাবদ্ধ করা হলো।

এর ফলে কয়েকটি বড় প্রশ্ন সামনে এসেছে:

🔹 AI কি ভবিষ্যতে "ডিজিটাল অস্ত্র" হিসেবে বিবেচিত হবে?
🔹 Bug Hunting ও Vulnerability Research-এ AI-এর ভূমিকা কতটা গ্রহণযোগ্য?
🔹 সরকার কি AI মডেল প্রত্যাহারের ক্ষমতা রাখবে?
🔹 AI Safety ও Innovation-এর মধ্যে ভারসাম্য কোথায় হবে?

সাইবার সিকিউরিটি দৃষ্টিকোণ থেকে বিষয়টি অত্যন্ত গুরুত্বপূর্ণ। যদি একটি AI মডেল সফটওয়্যার দুর্বলতা খুঁজে বের করতে পারে, তাহলে সেটি একইসাথে Defender এবং Attacker—উভয়ের হাতেই শক্তিশালী অস্ত্র হতে পারে।

তবে একটি প্রশ্ন থেকেই যায় -

যদি একই কাজ GPT, Gemini বা অন্যান্য Frontier Model-ও করতে পারে, তাহলে শুধুমাত্র Fable 5 ও Mythos 5-কে লক্ষ্যবস্তু বানানো কি যথার্থ ছিল?

AI Regulation-এর ভবিষ্যৎ কোন দিকে যাবে, তা হয়তো এই ঘটনাই নির্ধারণ করে দিতে পারে।

Eid Mubarak from ZeroDay Test 🌙Wishing our amazing Hunters, Clients, Researchers, and Cybersecurity Community a joyful a...
23/05/2026

Eid Mubarak from ZeroDay Test 🌙

Wishing our amazing Hunters, Clients, Researchers, and Cybersecurity Community a joyful and peaceful Eid-ul-Adha.

Thank you for being part of this journey to build a safer digital ecosystem for Bangladesh and South Asia. Your trust, support, and contributions are helping shape the future of responsible cybersecurity.

May this Eid bring happiness, success, and prosperity to you and your family. ✨

‼️🚨 BREAKING: GitHub Internal Breach Confirmedসম্প্রতি প্রকাশিত তথ্য অনুযায়ী, GitHub-এর একটি অভ্যন্তরীণ সিস্টেম TeamPCP ...
21/05/2026

‼️🚨 BREAKING: GitHub Internal Breach Confirmed

সম্প্রতি প্রকাশিত তথ্য অনুযায়ী, GitHub-এর একটি অভ্যন্তরীণ সিস্টেম TeamPCP নামের একটি সাইবার গ্রুপের মাধ্যমে আক্রান্ত হয়েছে। জানা গেছে, একটি Poisoned VS Code Extension ব্যবহার করে GitHub-এর এক কর্মীর ডিভাইস compromise করা হয়, যার মাধ্যমে প্রায় ৩,৮০০+ internal repository থেকে তথ্য চুরি করা হয়েছে।

সবচেয়ে উদ্বেগজনক বিষয় হলো - চুরি হওয়া ডেটাগুলো ইতোমধ্যে বিভিন্ন Cybercrime Forum-এ বিক্রির জন্য প্রকাশ করা হচ্ছে।

🔍 এই ঘটনাটি আবারও প্রমাণ করলো:

🚨 Third-party Extension Blindly Trust করা কতটা ঝুঁকিপূর্ণ
🚨 Developer Endpoint Security এখন আগের চেয়ে অনেক বেশি গুরুত্বপূর্ণ
🚨 Supply Chain Attack বর্তমানে Cyber Security-এর সবচেয়ে ভয়ংকর Threat গুলোর একটি

💡 প্রতিটি প্রতিষ্ঠান ও ডেভেলপারদের জন্য কিছু গুরুত্বপূর্ণ সতর্কতা:
✅ শুধুমাত্র Trusted & Verified Extension ব্যবহার করুন
✅ Developer Machine-এ EDR/XDR Monitoring নিশ্চিত করুন
✅ Least Privilege Access অনুসরণ করুন
✅ Sensitive Repository Access নিয়মিত Audit করুন
✅ Extension Installation Policy Implement করুন

একটি ছোট Extension থেকেই যখন বিশ্বের অন্যতম বড় Tech Platform আক্রান্ত হতে পারে, তখন আমাদের নিজেদের Infrastructure Security নিয়েও নতুনভাবে ভাবার সময় এসেছে।

🔐 ঢাল হও। তোমার ক্যাম্পাসকে সুরক্ষিত রাখো।Campus Coordinator Program দেশের প্রথম বাগ বাউন্টি প্ল্যাটফর্ম ZeroDay Test এর...
20/05/2026

🔐 ঢাল হও। তোমার ক্যাম্পাসকে সুরক্ষিত রাখো।

Campus Coordinator Program

দেশের প্রথম বাগ বাউন্টি প্ল্যাটফর্ম ZeroDay Test এর পক্ষ থেকে একটি বিশেষ Student Initiative 🚀

বাংলাদেশের বিভিন্ন বিশ্ববিদ্যালয়ের জন্য ZeroDay Test নিয়ে এসেছে সম্পূর্ণ ফ্রি VDP Program সুবিধা।

এই প্রোগ্রামের আওতায় আমরা University গুলোর ক্যাম্পাসের ডোমেইন ও ডিজিটাল অ্যাসেটগুলোর নিয়মিত Security Testing এবং Vulnerability Reporting পরিচালনা করবো।

👨‍🎓 Campus Coordinator হিসেবে যা যা সুযোগ থাকছে:
• Official Recognition
• Internship Program Access
• Certificate & Appreciation
• Cybersecurity Exposure
• Security Experts দের সাথে Networking

✅ যোগ্যতা:
• অবশ্যই যেকোনো বিশ্ববিদ্যালয়ের শিক্ষার্থী হতে হবে
• ১ম বর্ষ থেকে Final Year — সবাই আবেদন করতে পারবে
• যেকোনো Department গ্রহণযোগ্য
• Cybersecurity বিষয়ে আগ্রহী ও দায়িত্বশীল হতে হবে

📌 Campus Coordinators হবে তাদের ক্যাম্পাস ও Cybersecurity Community এর মধ্যে একটি গুরুত্বপূর্ণ Bridge।

একসাথে গড়ে তুলি আরও Secure Digital Bangladesh.

এই উদ্যোগের মূল লক্ষ্য হলো বিশ্ববিদ্যালয় পর্যায়ে Responsible Cybersecurity Culture তৈরি করা, শিক্ষার্থীদের Ethical Hacking ও Vulnerability Disclosure সম্পর্কে সচেতন করা এবং বাস্তবভিত্তিক Cybersecurity Ecosystem গড়ে তোলা।

রাগ করলা?  ঈদের ছুটির আগেই বাগ রিপোর্ট সাবমিট করে ফেলুন 🪲চলুন দেখে আসি কারা লিডারবোর্ড এ লিড করছে - https://www.zerodayt...
18/05/2026

রাগ করলা?
ঈদের ছুটির আগেই বাগ রিপোর্ট সাবমিট করে ফেলুন 🪲

চলুন দেখে আসি কারা লিডারবোর্ড এ লিড করছে - https://www.zerodaytest.com/leaderboard

ঈদের ছুটি শুরু হবে ২২শে মে থেকে, চলবে ৩১শে মে পর্যন্ত। সাময়িক বিড়ম্বনার জন্য আন্তরিকভাবে দু:খিত ☹️

🚨 ১,০০০+ সংবেদনশীল টেলিটক ডেটা ডার্ক ওয়েবে ফাঁস — এটা শুধু একটি নিউজ না, এটা বাংলাদেশের সাইবার সিকিউরিটি ইকোসিস্টেমের জন...
12/05/2026

🚨 ১,০০০+ সংবেদনশীল টেলিটক ডেটা ডার্ক ওয়েবে ফাঁস — এটা শুধু একটি নিউজ না, এটা বাংলাদেশের সাইবার সিকিউরিটি ইকোসিস্টেমের জন্য একটি বড় সতর্কবার্তা।

রাষ্ট্রীয় গুরুত্বপূর্ণ টেলিকম অবকাঠামোর সাথে সম্পর্কিত ডেটা যদি ডার্ক ওয়েবে ঘুরে বেড়ায়, তাহলে প্রশ্ন শুধু “কীভাবে লিক হলো?” — সেখানে থেমে থাকে না।
প্রশ্ন আসে —

❝ আমাদের Vulnerability Management কোথায়?
Threat Monitoring কতটা কার্যকর?
Responsible Disclosure এর জন্য নিরাপদ প্ল্যাটফর্ম আছে কি? ❞

আজকের বাস্তবতা হলো —
Cyber Attack বন্ধ করা সবসময় সম্ভব না, কিন্তু দ্রুত Detection, Responsible Disclosure এবং Community Driven Security দিয়ে ক্ষতি অনেকটাই কমানো সম্ভব।

বাংলাদেশে এখন প্রয়োজন —
✅ শক্তিশালী Vulnerability Disclosure Program (VDP)
✅ Active Bug Bounty Ecosystem
✅ নিয়মিত Security Assessment
✅ Threat Intelligence Monitoring
✅ Regulatory Compliance & Incident Response Framework

এই কারণেই আমরা তৈরি করছি দেশের প্রথম Crowdsourced Bug Bounty Platform — ZeroDay Test 🇧🇩

আমাদের লক্ষ্য শুধু Bug Hunting না, বরং —
🔹 প্রতিষ্ঠানগুলোকে আগেই দুর্বলতা খুঁজে পেতে সাহায্য করা
🔹 Ethical Hacker ও Security Researcher দের জন্য একটি Responsible Environment তৈরি করা
🔹 বাংলাদেশে একটি Sustainable Cybersecurity Community গড়ে তোলা

কারণ Data Breach হওয়ার পর আলোচনা নয়,
Breach হওয়ার আগেই প্রতিরোধই হওয়া উচিত মূল লক্ষ্য।

🚀 Incredible Progress in Just 10 Days — ZeroDay Test  🇧🇩Within only the first 10 days of launch, Bangladesh’s first crow...
11/05/2026

🚀 Incredible Progress in Just 10 Days — ZeroDay Test 🇧🇩

Within only the first 10 days of launch, Bangladesh’s first crowd-sourced Bug Bounty platform, ZeroDay Test, has received an overwhelming response from the cybersecurity community during its pilot phase — something that truly makes us proud and inspired.

📌 650+ Registered Users
🎯 3 Active Programs
📄 50+ Vulnerability Reports Submitted

But ZeroDay Test is not just another Bug Bounty platform — it is a vision, not only for Bangladesh but for the entire South Asian region.

Our goal has always been to build a platform where ethical hackers from Bangladesh and South Asia can access global-standard opportunities, while companies and startups can strengthen their digital security in a more accessible and cost-effective way (up to 60–80% savings).

For a long time, we have observed that local hunters face limitations on international platforms in terms of opportunity, communication, payment, and recognition. On the other hand, many startups and organizations in South Asia struggle with budget constraints, awareness, and accessibility issues when it comes to regular security testing.

This is where the journey of ZeroDay Test began.

We are building a community-driven, researcher-friendly, and South Asia-focused Bug Bounty ecosystem — designed to empower both security researchers and organizations.

This early progress proves one thing clearly: the South Asian cybersecurity community is ready. 🔐💚

A heartfelt thank you to all ethical hackers, researchers, supporters, and organizations who have trusted us from the very beginning. This is just the beginning.

We are building something much bigger for the future of cybersecurity in South Asia. 🚀

Address

Level 04, 15 Indira Road, Farmgate
Dhaka
1215

Alerts

Be the first to know and let us send you an email when ZeroDay Test posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Share