Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

In-Depth Analysis: The Balancer V2 Exploit- 1782

BlockSecPosted 10 Months Ago

A Race to the Bottom - Database Transactions Undermining Your AppSec- 1781

Viktor Chuchurski - DoyenSecPosted 10 Months Ago

Trivial C# Random Exploitation- 1780

Dennis GoodlettPosted 10 Months Ago

The minefield between syntaxes: exploiting syntax confusions in the wild- 1779

YesWeHackPosted 10 Months Ago

HackerOne 2025 Year in Review- 1778

HackerOnePosted 10 Months Ago

Arbitrary PUT request as victim user through Sentry error list- 1777

GitlabPosted 10 Months Ago

Bypassing File Upload Restrictions To Exploit Client-Side Path Traversal- 1776

Maxence Schmitt - DoyensecPosted 10 Months Ago

Exploiting Client-Side Path Traversal to Perform Cross-Site Request Forgery - Introducing CSPT2CSRF- 1775

Maxence Schmitt - DoyensecPosted 10 Months Ago

Abusing libmagic: Inconsistencies That Lead to Type Confusion- 1774

Hamid SjPosted 10 Months Ago

Vibecoding my way to a crit on Github- 1773

FurbreezePosted 10 Months Ago