~/
tags
- 2026 · 05 my experience passing the osep cert
- 2026 · 04 kali on qemu on debian: a speedrun setup
- 2026 · 04 bypassing waf rate limiting to prove blind sqli
- 2026 · 03 fine-tuning incentives to fight bug bounty ai slop
- 2026 · 03 escalating a preauth sqli to rce
- 2026 · 03 humiliating iis servers for fun and jail time
- 2026 · 02 how to not be an llm kiddie
- 2025 · 12 neural nets in cobol & other creative ways to k*ll yourself
- 2025 · 12 react2shell or prototype pollution going brrr
- 2025 · 12 my experience passing the oswe cert
- 2025 · 11 hello world
- 2025 · 04 using node graphs for subdomain relationship mapping
- 2024 · 12 exfiltrating a db via blind sqli using python
- 2024 · 11 nuxt misconfig exposed +6,700 user records
- 2024 · 10 making owasp asvs actually usable
- 2024 · 08 don't blindly trust public exploits
- 2024 · 07 triggering xss in hidden inputs
- 2024 · 03 recon harder or how I found a hidden blind sqli