Advertisement ยท 728 ร— 90

Posts by x1m

Post image

๐Ÿ˜Ž๐Ÿ๐Ÿ˜ฎโ€๐Ÿ’จ

1 year ago 5 0 1 0
Preview
a man in a tuxedo and bow tie is dancing in a crowd of people . ALT: a man in a tuxedo and bow tie is dancing in a crowd of people .

new week, new opportunities!

1 year ago 0 0 0 0
Post image

First try, pretty neat haha

1 year ago 1 0 0 0

I talk about this on the pod all the time, but CSRF is dead simple. You just need to know the conditions.

I'm not gonna recite them again here, but today a new condition came up:

No Content-Type header -> no CSRF restrictions
Same-site: None
POST
= CSRF

The research:

1 year ago 41 5 4 0
The Find Command
The Find Command YouTube video by TomNomNom

The 'find' command has a reputation of being a little tricky to use, so a while back I did made a short video about it www.youtube.com/watch?v=U2fs...

1 year ago 34 7 3 1

Ekko!

1 year ago 1 0 0 0
Post image Post image

hi bsky! woke up to a lot of new followers, howโ€™s everyone doing this Sunday?

1 year ago 2 0 0 0
Advertisement
Post image

weekend just started, what are you up to? Family, friends or some cool projects?

Iโ€™ll be working on some personal projects, but first: food and Rick and Morty

Have a good one!

1 year ago 1 0 0 0
Post image

Earlier this year, Assetnote's Security Research team discovered a vulnerability in Sitecore XP (CVE-2024-46938) that can lead to pre-authentication RCE.
Order of operations bugs are one of my favorite types of bugs :) Write up and exploit script here: assetnote.io/resources/re...

1 year ago 51 24 1 0
Preview
a cartoon character with a backpack is giving a thumbs up sign ALT: a cartoon character with a backpack is giving a thumbs up sign
1 year ago 1 0 0 0
Preview
a man wearing sunglasses and a hat is pointing at the camera . ALT: a man wearing sunglasses and a hat is pointing at the camera .

is this thing on?

1 year ago 2 0 1 0

sup

2 years ago 1 0 0 0