Author: Julien Ahrens


  • Patch Diffing CVE-2023-28121 to Compromise a WooCommerce

    Patch Diffing CVE-2023-28121 to Compromise a WooCommerce

    /

  • SecurePwn Part 2: Leaking Remote Memory Contents (CVE-2023-22897)

    SecurePwn Part 2: Leaking Remote Memory Contents (CVE-2023-22897)

    /

  • SecurePwn Part 1: Bypassing SecurePoint UTM’s Authentication (CVE-2023-22620)

    SecurePwn Part 1: Bypassing SecurePoint UTM’s Authentication (CVE-2023-22620)

    /

  • From Zero to Hero Part 2: From SQL Injection to RCE on Intel DCM (CVE-2022-21225)

    From Zero to Hero Part 2: From SQL Injection to RCE on Intel DCM (CVE-2022-21225)

    /

  • From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942)

    From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942)

    /

  • WordPress Transposh: Exploiting a Blind SQL Injection via XSS

    WordPress Transposh: Exploiting a Blind SQL Injection via XSS

    /

  • AWAE Course and OSWE Exam Review

    AWAE Course and OSWE Exam Review

    /

  • Smuggling an (Un)exploitable XSS

    Smuggling an (Un)exploitable XSS

    /

  • CVE-2020-16171: Exploiting Acronis Cyber Backup for Fun and Emails

    CVE-2020-16171: Exploiting Acronis Cyber Backup for Fun and Emails

    /

  • Bug Bounty Platforms vs. GDPR: A Case Study

    /