Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

Github Secrets exposed due to RCE in Formatter Action from pull_request_target event - 1719

Anthony WeemsPosted 9 Months Ago

v1 Instance Metadata Service protections bypass - 1718

Anthony WeemsPosted 9 Months Ago

Cross-Site Request Forgery- 1717

Filippo ValsordaPosted 9 Months Ago

Live EigenLayer Bug Discovered During Sidecar Security Review- 1716

Andy LiPosted 9 Months Ago

Compiler Bug Causes Compiler Bug: How a 12-Year-Old G++ Bug Took Down Solidity- 1715

Kiprey - OtterSecPosted 9 Months Ago

Gato X - GitHub Actions Security Scanner- 1714

Adnane KhanPosted 9 Months Ago

Fooling the Sandbox: A Chrome-atic Escape - 1713

Vincent Yeo - STAR LabsPosted 9 Months Ago

Finding Mispriced Opcodes with Fuzzing - 1712

Max Ammann - Trail of Bits Posted 9 Months Ago

How we Rooted Copilot - 1711

Vaisha Bernard - Eye SecurityPosted 9 Months Ago

A Novel Technique for SQL Injection in PDO’s Prepared Statements- 1710

Adam Kues - SearchlightPosted 9 Months Ago