Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

Ghosts of Encryption Past – How we Read All Your Emails in Salesforce Marketing Cloud- 2012

SlcyberPosted 4 Months Ago

Claude Code RCE: Exploiting Deeplink Handlers via Settings Injection- 2011

0dayPosted 4 Months Ago

GPT-5.5: Mythos-Like Hacking, Open To All- 2010

XBOWPosted 4 Months Ago

The ultimate Bug Bounty guide to OS command injection vulnerabilities- 2009

YesWeHackPosted 4 Months Ago

Auth bypass in WordPress Azure AD SSO plugin due to missing OIDC id_token validation- 2008

YesWeHackPosted 4 Months Ago

Behind the Scenes Hardening Firefox with Claude Mythos Preview- 2007

MozillaPosted 4 Months Ago

Postmortem: TanStack npm supply-chain compromise- 2006

TanStackPosted 4 Months Ago

Next.js WebSocket SSRF: Unauthenticated Access to Internal Resources- 2005

hadrianPosted 4 Months Ago

Post-Mortem: HuffRouter Approval Draining via Trailing Calldata- 2004

Ekubo ProtocolPosted 4 Months Ago

A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens- 2003

Seth Jenkins - Google Project ZeroPosted 4 Months Ago