Pwning Infrastructure via file protocol
A new support ticket feature. A suspicious download_url parameter. An unfiltered file:// protocol. Got a config file. 99+ plaintext secrets exposed
Search for a command to run...
Exploring the art and science of offensive security and other interesting stuff.
A new support ticket feature. A suspicious download_url parameter. An unfiltered file:// protocol. Got a config file. 99+ plaintext secrets exposed
Before a thought becomes a decision, it exists in all its possible forms at once, this is an exploration of what happens in the mind before collapse.
Exploring the eternal internal conflict of the mind through Vedanta, Stoicism, psychology, and personal reflection.
A meditation on the ancient pattern of civilizational decay, my thoughts on erosion of critical thinking and worship of ignorance.
In this non-technical post, I talk about why red teaming doesn't have to turn you into the villain, discussed various non-technical aspects of responsible red teaming.