Artsploit

get shell or die trying

Thursday, October 3, 2024

3 ways to get Remote Code Execution in Kafka UI

›
When I first encountered Kafka UI, I was thrilled that such a dangerous functionality is exposed without authentication. After some time I d...
Tuesday, August 22, 2023

mTLS: When certificate authentication is done wrong

›
https://github.blog/2023-08-17-mtls-when-certificate-authentication-is-done-wrong/ In 2023 I spent some time researching x509 certificate au...
Tuesday, June 29, 2021

Pre-auth RCE in ForgeRock OpenAM (CVE-2021-35464)

›
https://portswigger.net/research/pre-auth-rce-in-forgerock-openam-cve-2021-35464 I wrote this article while working at the PortSwigger Rese...
Wednesday, March 24, 2021

Hidden OAuth attack vectors

›
https://portswigger.net/research/hidden-oauth-attack-vectors I wrote this article while working at the PortSwigger Research team.
Thursday, September 3, 2020

Spring View Manipulation Vulnerability

›
https://www.veracode.com/blog/secure-development/spring-view-manipulation-vulnerability I wrote this article while working at the Veracode ...
Saturday, August 10, 2019

Apache Solr Injection @ DEFCON 27

›
https://github.com/veracode-research/solr-injection A brand new vulnerability -  Apache Solr Injection , as well as new ways to RCE in this ...
Monday, February 25, 2019

Exploiting Spring Boot Actuators

›
https://www.veracode.com/blog/research/exploiting-spring-boot-actuators I wrote this article while working at the Veracode Research team.
Thursday, January 3, 2019

Exploiting JNDI Injections in Java

›
https://www.veracode.com/blog/research/exploiting-jndi-injections-java I wrote this article while working at the Veracode Research team.
Friday, August 19, 2016

[demo.paypal.com] Node.js code injection (RCE)

›
When I am trying to find vulnerabilities in web applications, I always perform fuzzing of all http parameters, and sometimes it gives me som...
Monday, January 25, 2016

[manager.paypal.com] Remote Code Execution Vulnerability

›
In December 2015, I found a critical vulnerability in one of PayPal business websites ( manager.paypal.com ). It allowed me to exe...
Home
View web version
Powered by Blogger.