Writeup of "Payload Plz" challenge - Le Hack 2025
The goal was to write a polyglot payload for 13 contexts 🤯
swisskyrepo.github.io/blog/payload...
Posts by Swissky
I migrated my coding life, including my static websites, off GitHub. It's easier than you might think! Here's how I did it.
taggart-tech.com/mig...
A great write up on McDonald's API security by Eaton:
eaton-works.com/2024/12/19/m...
If you want to learn some API hacking techniques, I've just pushed a new API module to DVWA:
github.com/digininja/DVWA
Yop ! 🌿
Reprise des veilles technos ce soir 21h ! 🌖
En compagnie de @drypaint.bsky.social @maltemo.bsky.social @swissky.bsky.social 😎
~ See you there ~
www.twitch.tv/thelaluka
The results are in! Congratulations to the winners—you’ll receive your prize via DM. Thank you all for participating! 😊
New module on #NetExec : wam
Dump #Entra access tokens from Windows Token Broker Cache, and make your way to Entra 🚀
Thanks @xpnsec.com for the technique! More info on his blog : blog.xpnsec.com/wam-bam/
🚀 Big Announcement! 🚀
After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨
To celebrate, I’m gifting 2 free copies to random reposters! 🔥
👉 Repost for a chance to win
Thank you all for your incredible support! 🙌
#CyberSecurity #Infosec
Payloads All The Things: Web Application Security Cheatsheets leanpub.com/payloadsallt... by Swissky is the featured book on the Leanpub homepage! leanpub.com #ComputerProgramming #ComputerSecurity
This cheatsheet has been a labor of love and countless hours of dedication.
👉 Grab your copy now: leanpub.com/payloadsallt...
The results will be announced on 25th December. Entries will close Tuesday 24th, December at 12:00 PM (GMT) 🕐
🚀 Big Announcement! 🚀
After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨
To celebrate, I’m gifting 2 free copies to random reposters! 🔥
👉 Repost for a chance to win
Thank you all for your incredible support! 🙌
#CyberSecurity #Infosec
still the best bug: GraphQL discloses internal beer consumption (hackerone.com/reports/419883)
I run @agarri.fr (this main account) and @mastering-burp.agarri.fr (dedicated to @burpsuite.bsky.social tips)
And I like how custom handles bring your "brand" (aka domain name) front and center while helping to combat impersonation
🌧️ On a rainy day, I dove into Pokémon Yellow glitches. Ever wondered how they work under the hood?
As kids, we were already hackers manipulating bits in memory! 🔍👾
Read more in my latest blog post:
swisskyrepo.github.io/Pokemon-Glit...