Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

CVE-2024-55963: Unauthenticated RCE in Default-Install of Appsmith- 1621

Whit Taylor - Rhino SecurityPosted 1 Year Ago

IngressNightmare: 9.8 Critical Unauthenticated Remote Code Execution Vulnerabilities in Ingress NGINX- 1620

Wiz.ioPosted 1 Year Ago

Halting Cross-chain: Axelar Network Vulnerability Disclosure- 1619

Macro NunesPosted 1 Year Ago

DoubleUp Roll: Double-spending in Arbitrum by Rolling It Back- 1618

Hong Kong PolytechnicPosted 1 Year Ago

Yul Calldata Corruption — 1inch Postmortem- 1617

Omar GanievPosted 1 Year Ago

Insomnihack - Pioneering Zero Days at Pwn2Own Automotive 2024- 1616

NCC GroupPosted 1 Year Ago

Sign in as anyone: Bypassing SAML SSO authentication with parser differentials- 1615

Peter Stockli - GithubPosted 1 Year Ago

How We Hacked a Software Supply Chain for $50K- 1614

LupinPosted 1 Year Ago

Sanitize Client-Side: Why Server-Side HTML Sanitization is Doomed to Fail- 1613

Yaniv Nizry - Sonar SourcePosted 1 Year Ago

x/group can halt when erroring in EndBlocker - 1612

Interchain FoundationPosted 1 Year Ago