Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

The Problem with IoT Cloud-Connectivity and How it Exposed All OvrC Devices to Hijacking- 1540

Uri KatzPosted 1 Year Ago

AWS WAF Bypass: invalid JSON object and unicode escape sequences- 1539

Andrea MeninPosted 1 Year Ago

Breaking Down Multipart Parsers: File upload validation bypass- 1538

Andrea MeninPosted 1 Year Ago

A New Era of macOS Sandbox Escapes: Diving into an Overlooked Attack Surface and Uncovering 10+ New Vulnerabilities- 1537

Mickey JinPosted 1 Year Ago

What Are My OPTIONS? CyberPanel v2.3.6 pre-auth RCE- 1536

DreyAndPosted 1 Year Ago

Fuel Network Argument Parsing Vuln- 1535

minato7namikaziPosted 1 Year Ago

Why exploits prefer memory corruption- 1534

sha1lanPosted 1 Year Ago

Code auditing is not the same as vulnerability research- 1533

sha1lanPosted 1 Year Ago

Filecoin Boost: Clients can create PublishConfirmed but never-AddedPiece (handoff) deals- 1532

Qiuhao LiPosted 1 Year Ago

$150,000 Evmos Vulnerability Through Reading Documentation- 1531

jayjonah.ethPosted 1 Year Ago