I just wrote a new blog post! This is how I (ab)used a jailed file write bug in Tomcat/Spring. Enjoy!
Remote Code Execution with Spring Properties :: srcincite.io/blog/2024/11...
via @mohansrk.bsky.social on the other site
elon is the epitome of a perpetual dopamine-craving machine fueled by social validation.
sends rockets to space, yet still hunger for something more, X became the playground, recent gaming fiasco says it all.
gotta keep the right brain in check with the left brain.
queued up tonight but just missed out, if anyone is selling tickets, looking for two tickets to ccc #38c3
was looking at gitlab code and damn @joaxcar.bsky.social is everywhere. talk about niche 😅
Hacking Windsurf: I asked the AI for the shell, it said yes.
new video’s out. I show how I could’ve hacked you… just by getting you to click my link.
Link posted below.
www.youtube.com/watch?v=23Mz...
yes
i hate that they didn’t used real galaxy not some fake dots. it literally haunts me every-time i open this app.
just wondering, infosec people using this site 🤔? just looked at analytics of same post on linkedin, x and this.
there is no reach here, good that I didn't deleted the other app.
Imagine opening a Discord message and suddenly your computer is hacked.
We discovered a bug that made this possible and earned a $5,000 bounty for it.
Here's the story and a beginner-friendly deep dive into V8 exploit development.
watch: youtu.be/R3SE4VKj678?...