Advertisement · 728 × 90

Posts by Alvaro Muñoz

It has been great fun building this and watching it deliver a steady stream of real vulnerabilities in live sites! If you're curious how we did it, @nicowaisman.bsky.social has a new post: xbow.com/blog/top-1-h...

9 months ago 10 2 0 1

This is the first of a series of posts we're doing on some of the vulns found as part of the HackerOne work – we have lots more fun ones coming up about some great SSRF, SQLi, and RCE vulns it discovered, with very clever exploit techniques :)

9 months ago 8 3 0 0
Preview
XBOW – Breaking the Shield: How XBOW Discovered Multiple XSS Vulnerabilities in Palo Alto’s GlobalProtect VPN XBOW discovered multiple cross-site scripting (XSS) vulnerabilities in Palo Alto Networks’ GlobalProtect VPN web application

For the last 6 months I’ve been helping an incredible team to build
@xbow.com
and there was not a single day without being amazed by XBOW findings and reasoning. It even got to the top of
@hacker0x01.bsky.social
US leaderboard 🤯Stay tuned for blog posts and detailed traces!

9 months ago 4 0 0 1
Video

For the first time in history, the #1 hacker in the US is an AI.

(1/8)

9 months ago 16 7 1 3

December was my last month at GitHub, and after a refreshing Xmas break, I’m thrilled to announce that I’ll be starting a new adventure at @xbow! 🚀 Grateful for all the memories and experiences at GitHub, and can’t wait to help shaping the future of security testing!

1 year ago 8 0 1 0

After an amazing journey, this is my last week at GitHub. It’s been an incredible 5 years working alongside the talented team at the Security Lab. Grateful for the experiences, collaborations, and the amazing culture I’ve been a part of. On to the next adventure!

1 year ago 8 0 0 0