Here I talk about anything, mostly technical topics:
2023
-
Expert Lab: Server-side Template Injection with a Custom Exploit
Web Application Security
Web Security Academy
Expert Labs
Server-Side Template Injection
SSTI
PHP
Twig
-
Expert Lab: Developing a custom gadget chain for PHP deserialization
Web Application Security
Web Security Academy
Expert Labs
Insecure Deserialization
Remote Code Execution
Gadget Chains
PHP
2022
-
Lab: Exploiting PHP deserialization with a pre-built gadget chain
Web Application Security
Web Security Academy
Labs
Insecure Deserialization
Remote Code Execution
Gadget Chains
PHP
PHPGGC
-
Expert Lab: Reflected XSS in a JavaScript URL with some characters blocked
Web Application Security
Web Security Academy
Expert Labs
Cross-Site Scripting
XSS
Javascript
-
Expert Lab: Web Shell Upload via Race Condition
Web Application Security
Web Security Academy
Expert Labs
File Upload Vulnerabilities
Race Condition Vulnerabilities
Turbo Intruder
Exiftool
-
Handy Benchmarking Tools for your Server
Web
Benchmarking Tools
Web Application Security
Web Application Performance Testing
DNSSEC
TLS
HTTP Headers
Security Headers
2021
-
Obsidian: A second brain, for you, forever
Obsidian
Knowledge Base
Personal Knowledge Management
Note Taking
Markdown
References
Icon made by mirella.design.