Posts
- July 19, 2020 Playing with DigitalOcean Kubernetes
- June 8, 2020 Discovering an XXE in Postgres (CVE-2020-13692)
- May 18, 2020 Fuzzing libsignal-protocol-c with libfuzzer and OSS-Fuzz
- May 13, 2020 Rediscovering CVE-2019-18212: RCE in Eclipse Theia
- August 23, 2019 Keybase SSH: An Open Source SSH CA
- July 14, 2018 Measuring Open Proxies v2
- April 26, 2017 Pwning River Hawk's Bootloader Without DPA or Glitching
- March 8, 2017 XSS and SQLi Scanning with mitmproxy
- April 17, 2016 XSS in pypi (and Uber!)
- April 17, 2016 CSV Injection in business.uber.com
- April 17, 2016 XSS in getrush.uber.com
- March 4, 2016 Simple Image Steganography
- February 18, 2016 Website Hosting with KBFS
- February 17, 2016 Slope Field Generator
- February 16, 2016 KBFS On Linux
- August 6, 2015 (Ab)using Google’s Unlimited Photo Storage for Fun and Profit
- March 29, 2015 Bug Bounties List!
- February 7, 2015 pyWMATA
- January 12, 2015 Scanning for Malicious Proxies
- January 6, 2015 Recoverable Secret Generator