Writeup of "Payload Plz" challenge - Le Hack 2025
The goal was to write a polyglot payload for 13 contexts π€―
swisskyrepo.github.io/blog/payload...
Writeup of "Payload Plz" challenge - Le Hack 2025
The goal was to write a polyglot payload for 13 contexts π€―
swisskyrepo.github.io/blog/payload...
I migrated my coding life, including my static websites, off GitHub. It's easier than you might think! Here's how I did it.
taggart-tech.com/mig...
A great write up on McDonald's API security by Eaton:
eaton-works.com/2024/12/19/m...
If you want to learn some API hacking techniques, I've just pushed a new API module to DVWA:
github.com/digininja/DVWA
Yop ! πΏ
Reprise des veilles technos ce soir 21h ! π
En compagnie de @drypaint.bsky.social @maltemo.bsky.social @swissky.bsky.social π
~ See you there ~
www.twitch.tv/thelaluka
The results are in! Congratulations to the winnersβyouβll receive your prize via DM. Thank you all for participating! π
New module on #NetExec : wam
Dump #Entra access tokens from Windows Token Broker Cache, and make your way to Entra π
Thanks @xpnsec.com for the technique! More info on his blog : blog.xpnsec.com/wam-bam/
π Big Announcement! π
After 8+ years of working on PayloadsAllTheThings, Iβm excited to release it as an ebook on Leanpub! πβ¨
To celebrate, Iβm gifting 2 free copies to random reposters! π₯
π Repost for a chance to win
Thank you all for your incredible support! π
#CyberSecurity #Infosec
Payloads All The Things: Web Application Security Cheatsheets leanpub.com/payloadsallt... by Swissky is the featured book on the Leanpub homepage! leanpub.com #ComputerProgramming #ComputerSecurity
This cheatsheet has been a labor of love and countless hours of dedication.
π Grab your copy now: leanpub.com/payloadsallt...
The results will be announced on 25th December. Entries will close Tuesday 24th, December at 12:00 PM (GMT) π
π Big Announcement! π
After 8+ years of working on PayloadsAllTheThings, Iβm excited to release it as an ebook on Leanpub! πβ¨
To celebrate, Iβm gifting 2 free copies to random reposters! π₯
π Repost for a chance to win
Thank you all for your incredible support! π
#CyberSecurity #Infosec
NTLM Relaying β Making the Old New Again
labs.jumpsec.com/ntlm-relayin...
still the best bug: GraphQL discloses internal beer consumption (hackerone.com/reports/419883)
I run @agarri.fr (this main account) and @mastering-burp.agarri.fr (dedicated to @burpsuite.bsky.social tips)
And I like how custom handles bring your "brand" (aka domain name) front and center while helping to combat impersonation
π§οΈ On a rainy day, I dove into PokΓ©mon Yellow glitches. Ever wondered how they work under the hood?
As kids, we were already hackers manipulating bits in memory! ππΎ
Read more in my latest blog post:
swisskyrepo.github.io/Pokemon-Glit...
Itβs never too late to solve an old challenge. I spent some time this week-end to try my luck on a hardware challenge from the Ph0wn CTF 2019.
Here is my writeup,
swisskyrepo.github.io/Ph0wn-Flag-D...
DLS 2024 - RedTeam Fails - "Oops my bad I ruined the operation", a story on how to fail a red team assessment π¦
swisskyrepo.github.io/Drink-Love-S...