The following is my write-up for the first Intigriti XSS challenge of 2021. I discovered two solutions, the intended one and an unintended one, both of which were accepted by the challenge creat...
Write-up: HackerOne #HackyHolidays CTF
A few weeks back, HackerOne announced their Christmas CTF: The Grinch has gone hi-tech this year with the intention of ruining the holidays 😱We need you to infiltrate his network and take him down...
Write-up: BugPoc November 2020 XSS Challenge
I’ve been getting into XSS challenges over the last few weeks and BugPoc recently announced a nice tough one: Check out our XSS CTF! Skip an Amazon Interview + $2k in prizes!Submit solutions to be...
Leaking Git Repositories From Misconfigured Sites
Many deployment mechanisms for web applications exist in which the contents of a repository is copied onto a production server, whether this is by building the files into a Docker container, or sim...