Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

GCP Instance Takeover via Poor DHCP Implementation- 550

irslPosted 4 Years Ago

How I bypassed 2-Factor-Authentication on Google, Facebook, Yahoo, LinkedIn, and many others- 549

Shubham ShahPosted 4 Years Ago

Exploiting Less.js to achieve RCE- 548

Jeremy Buis Posted 4 Years Ago

Microsoft Adventure DRM Protection Bypass- 547

Jimmy MaherPosted 4 Years Ago

Taking over Uber accounts through voicemail- 546

AssetNotePosted 4 Years Ago

An Authorization Bypass on the Microsoft Windows EFI System Partition- 545

Simon Zuckerbraun - ZDIPosted 4 Years Ago

Microsoft Edge Universal XSS- 544

TensorbugsPosted 4 Years Ago

Finding DOM Polyglot XSS in PayPal the Easy Way- 543

Gareth Heyes - PortSwiggerPosted 4 Years Ago

Pre-auth RCE in ForgeRock OpenAM- 542

Michael Stepankin - PortSwiggerPosted 4 Years Ago

PrintNightmare (CVE-2021-1675): Remote code execution in Windows Spooler Service- 541

Zhiniang Peng & Xuefeng LiPosted 4 Years Ago