2022-01-20 |
Cracking Oracle Apex password hashes |
Blog |
|
2021-09-08 |
Sharpen your monitoring capabilities with honeypots |
Blog |
|
2021-06-03 |
Added RSS feed |
|
|
2021-02-27 |
Harden your security team - Don't trust bug bounty reports |
Blog |
|
2021-01-02 |
Shortest Python quine |
|
|
2020-12-09 |
Cross-Site Request Forgery in WordPress Press This function allows DoS |
Advisory |
|
2020-12-09 |
Instant negative hash cracking wordlist lookup |
Programming |
|
2020-12-09 |
Spot The Bug challenge 2016 write-up |
Blog |
|
2020-12-09 |
LazyFact - Factoring RSA moduli using basic methods |
Programming |
|
2020-12-09 |
Spot The Bug challenge December 2016 |
Blog |
|
2020-12-09 |
Threaded client/server sockets in Python |
Programming |
|
2020-12-09 |
Stored Cross-Site Scripting in Gallery - Image Gallery WordPress Plugin |
Advisory |
|
2020-12-09 |
Persistent Cross-Site Scripting in Instagram Feed plugin via CSRF |
Advisory |
|
2020-12-09 |
Weak validation of Amazon SNS push messages in W3 Total Cache WordPress Plugin |
Advisory |
|
2020-12-09 |
Persistent Cross-Site Scripting in WP Google Maps Plugin via CSRF |
Advisory |
|
2020-12-09 |
Information disclosure race condition in W3 Total Cache WordPress Plugin |
Advisory |
|
2020-12-09 |
Reflected Cross-Site Scripting vulnerability in MailPoet Newsletters plugin |
Advisory |
|
2020-12-09 |
Multiple vulnerabilities in All In One WP Security & Firewall plugin login CAPTCHA |
Advisory |
|
2020-12-09 |
Reflected Cross-Site Scripting vulnerability in W3 Total Cache plugin |
Advisory |
|
2020-12-09 |
Persistent Cross-Site Scripting in Woocommerce WordPress plugin |
Advisory |
|
2020-12-09 |
Buffer over-read vulnerability in Virtuozzo Power Panel (VZPP) and Automator |
Advisory |
|
2020-12-09 |
Authorization bypass in InfiniteWP Admin Panel |
Advisory |
|
2020-12-09 |
Command injection in InfiniteWP Admin Panel |
Advisory |
|
2020-12-09 |
ASCII animations in terminal using curses |
Programming |
|
2020-12-09 |
JavaScript animation using the canvas element |
Programming |
|
2020-12-09 |
Spot The Bug challenge 2015 write-up |
Blog |
|
2020-12-09 |
Hackerone DoS by PNG compression |
Advisory |
|
2020-12-09 |
Spot The Bug challenge 2015 briefing |
Blog |
|
2020-12-09 |
Glype proxy local address filter bypass |
Advisory |
|
2020-12-09 |
Glype proxy cookie jar path traversal allows code execution |
Advisory |
|
2020-12-09 |
Trainpooling |
Blog |
|
2020-12-09 |
Contact |
Contact |
|
2020-12-09 |
Python library for creating PNG image data |
Programming |
|
2020-12-09 |
Hackerone DoS by GIF resize flooding |
Advisory |
|
2020-12-09 |
Crackcoin: basic blockchain-free cryptocurrency PoC in Python |
Programming |
|
2020-12-09 |
Reflected Cross-Site Scripting in CM4ALL |
Advisory |
|
2020-12-09 |
Recovering passwords from pixelized screenshots |
Blog |
|
2020-12-09 |
Lessons from password policy science |
Blog |
|
2020-12-09 |
Self-replicating binary infecting Mach-O files |
Programming |
|
2020-12-09 |
Spot The Bug - An Open End |
Blog |
|
2020-12-09 |
Temporary intercom hack |
Blog |
|
2020-12-09 |
OSCP - Fun and challenging but overrated |
Blog |
|
2020-12-09 |
Viewing mssql backups files and extracting hashes |
Blog |
|
2020-12-09 |
Siemens Spectrum Power Command Injection |
Advisory |
|
2020-12-09 |
Owning Building Management Systems |
Blog |
|
2020-12-09 |
Shortest Python quine |
Programming |
|
2020-12-09 |
Simple libHackRF API example |
Programming |
|
2020-12-09 |
Only log required data for WPA cracking (aircrack-ng / airodump) |
Programming |
|
2020-12-09 |
Loracrack - LoRaWAN session cracker |
Programming |
|
2020-12-09 |
To set currents in motion |
Blog |
|
2020-12-09 |
Secure Diffie-Hellman parameters for Lighttpd with SNI |
Blog |
|
2020-12-09 |
Programming the Razer Tartarus Chroma on Linux |
Programming |
|
2020-12-09 |
Added RSS feed |
Blog |
|
2020-12-09 |
Staying Positive About False Negatives |
Blog |
|
2020-12-09 |
Fixing this "couldn't get 'max filedescriptors'" error |
Blog |
|
2020-12-09 |
Postfix mail bot for helping setting up PGP encrypted mail |
Programming |
|
2020-12-09 |
Spot The Bug challenge 2018 warm-up |
Blog |
|
2020-12-09 |
Hoe begin je 2018 veilig op internet? |
Blog |
|
2020-12-09 |
Compiling a Monero miner on OSX |
Blog |
|
2020-12-09 |
Broken TLS certificate pinning in VTech DigiGo Kid Connect app |
Advisory |
|
2020-12-09 |
Multiple vulnerabilities in VTech DigiGo allow browser overlay attack |
Advisory |
|
2020-12-09 |
Broken TLS certificate validation in VTech DigiGo browser |
Advisory |
|
2020-12-09 |
Meta |
Blog |
|
2020-12-09 |
Fixing the <i>critical software update</i> OSX install message |
Blog |
|
2020-12-09 |
A journey into cracking RSA moduli with a common GCD |
Blog |
|
2020-12-09 |
Helpdesk - Stupid things people say |
Blog |
|
2020-12-09 |
Kobo Aura H2O hacking |
Blog |
|
2020-12-09 |
Hackerone DoS by JPG pixel flood |
Advisory |
|
2020-12-09 |
A widespread piece of .NET code allowing code execution |
Blog |
|