Hello, my name is Wojtek. I break into systems professionally as a security engineer.
This blog is where I share research, writeups, and projects.

Check out my recent blogposts:

📄 SMØLLM - Hack.lu 2025

October 24, 2025

📄 KONTINUERLIG: From Heredoc Injection to Secret Extraction via GitHub Actions - Hack.lu 2025

October 22, 2025

📄 When Vue Forgets to Escape: From a Missing v-pre to Superadmin Takeover - CVE-2025-6411 (Part II)

August 25, 2025

📄 When Vue Forgets to Escape: Multiple Stored XSS Vectors Caused by Missing v-pre directive (Part I)

July 15, 2025