Seclog - #36
Spotlight: Websocket Pentesting with wsrepl, SVG Security Risks, New techniques Race conditions, XboxOneDirectoryTraversal, websocket_fuzzer etc.
Photo by Yusuf Onuk on Unsplash
seclinks
AWS WAF Bypass: invalid JSON object and unicode escape sequences
Melting the DNS Iceberg: Taking over your infrastructure Kaminsky style
How hackers may steal your Ethers and why does eth_sign function
Securing macOS: A Closer Look At Built-In macOS Application Security
RedTeam Pentesting - Blog - Bringing Monsoon to the Next Level
Leaked Secrets and Unlimited Miles: Hacking the Largest Airline and Hotel Rewards Platform
Don’t you (forget NLP): Prompt injection with control characters in ChatGPT