Abusing Enclosed Alphanumerics for SSRF
1 points·by cujanovic··0 comments
SSRF (Server Side Request Forgery) Testing Resources
cujanovic.com1 points·by cujanovic··0 comments
Open Redirect Payloads
github.com1 points·by cujanovic··0 comments
SSRF Testing resources – tools and links to help you test for SSRF in web apps
github.com1 points·by cujanovic··0 comments
How I Hacked My Smart TV from My Bed via a Command Injection
netsparker.com2 points·by cujanovic··0 comments
CVE-2016-8610 (SSL Death Alert) PoC
github.com1 points·by cujanovic··0 comments
The State of Wordpress Security
blog.ripstech.com6 points·by cujanovic··1 comments
Backslash Powered Scanning: Hunting Unknown Vulnerability Classes
blog.portswigger.net4 points·by cujanovic··0 comments
Linux containers in 500 lines of code
blog.lizzie.io2 points·by cujanovic··0 comments
CSRF protection bypass on any Django powered site via Google Analytics
hackerone.com2 points·by cujanovic··0 comments
How I gained access to TMobile’s national network for free
medium.com62 points·by cujanovic··10 comments
Nginx resolver vulnerabilities allow cache poisoning attack
blog.zorinaq.com1 points·by cujanovic··0 comments
How I Could Have Hacked Multiple Facebook Accounts
medium.com5 points·by cujanovic··0 comments
Vulnerability in the Linux kernel's tcp stack implementation
blogs.akamai.com3 points·by cujanovic··0 comments
The Imperva HTTP/2 Vulnerability Report and NGINX
nginx.com2 points·by cujanovic··0 comments
How to steal any developer's local database
bouk.co2 points·by cujanovic··0 comments
HTTP/2: Faster and better than HTTP 1.1, but is it more secure? [pdf]
imperva.com6 points·by cujanovic··0 comments
Mr Robot S02E01 easter egg
0x41.no6 points·by cujanovic··0 comments
Firefox – Same-Origin Policy Bypass (CVE-2015-7188)
blog.bentkowski.info32 points·by cujanovic··5 comments
Debian Exim Spool Local Root
halfdog.net1 points·by cujanovic··0 comments