An Image Speaks a Thousand RCEs: The Tale of Reversing an ExifTool CVEA tweet showing an RCE in ExifTool popped up on my feed; it looked interesting — maybe a little scary. But what good is an RCE on a demo…May 17, 20211May 17, 20211
Solving Intigriti Challenge using… Content Injection!Using content injection to achieve DOM XSS.Apr 26, 20202Apr 26, 20202
h1–702 CTF — Web Challenge Write UpThis writeup has since won the H1–702 challenge. Read HackerOne blog here: https://www.hackerone.com/blog/H1-702-CTF-Winners-AnnouncedJul 1, 20182Jul 1, 20182