Well said. ππ€£
Well said. ππ€£
Good morning to you too. Wishing you a fantastic day. βπ
#hacking #bugbounty #cybersecurity Sharing is caring. π Here is a writup of my first earned cve number, CVE-2025-0474 to be precise. A joint effort with @laluka.bsky.social and a totally cool story about a very interesting Server Side Request Forgery, with a twist. Cheers ππ₯³ππ₯³π
@laluka.bsky.social Thank you so very much. π It is a huge pleasure working with you. And so much fun too. π₯³π₯³π₯³
Can't wait to see it live. Thanks @burpsuite.bsky.social π
#hacking Cool read! π
Don't forget the bacon please. π
Thank you very much. ππ₯³
π₯³ Yaaaaaay π₯³
CVE-2025-0474 is the number. π₯³ Crazy happy to earn my first CVE number. It was a joint effort with @laluka.bsky.social during the www.offenskill.com level 30 training. Learned a bunch and had lots of fun. What more can one ask for? π #hacking #bugbounty #cve www.cve.org/CVERecord?id...
Makes sense π€£
Awesome! π
Good morning to you too. π
Thank you. Happy Thor's day to you too. π
Good morning. πβ
Loooooking good πππ
Golang: because hackers havenβt given up on SQL injection in 2024...
Cool tip π
π€£
π€£π€£π€£
π€£π€£π€£
Loads of vulns, loads of funz. πππ
LOL π€£π€£π€£
Good morning to you too. π
I wrote a thing with my colleague Ilyass El Hadi (0xc0ffee_) & Charles Prevost, about how we've been leveraging offensive webapp testing during Red Teams. 4 use cases of external breaches using webapps inside, enjoy! #appsec
cloud.google.com/blog/topics/...
Cool read π
Good morning π
The workflow described in this article is very close to the one I teach during my training sessions
1) use colors to highlight the requests to be replayed
2) use session handling rules (and possibly macros) to automate interactions
In case you missed it...I wrote a book, please support my work by buying a copy. If you've already bought one thank you please can you RT to spread the word!
leanpub.com/javascriptfo...
A joke for infosec nerds...
Knock Knock
Race Condition
Who's there?