-
SMØLLM - Hack.lu 2025
-
KONTINUERLIG: From Heredoc Injection to Secret Extraction via GitHub Actions - Hack.lu 2025
-
Privilege Escalation in Ghost CMS
-
When Vue Forgets to Escape: From a Missing v-pre to Superadmin Takeover (Part II) - CVE-2025-64112
-
When Vue Forgets to Escape: Multiple Stored XSS Vectors Caused by Missing v-pre directive
-
Web cache poisoning with an unkeyed header - Web Security Academy Lab Solution
-
Web cache poisoning with an unkeyed cookie - Web Security Academy Lab Solution
-
Reflected XSS into HTML context with nothing encoded - Web Security Academy Lab Solution
-
HackTheBox - Dyplesher Writeup