Aug 06, 2021
·
9 min readDeserialization attack on YAML and reversing web assembly
Jun 14, 2021
·
11 min readFriendly PHP insecure deserialization attack and race condition
Jun 09, 2021
·
12 min readChaining XSS, SSRF, and deserialization vulnerabilities to get RCE
May 09, 2021
·
9 min readExploiting an insecure deserialization on Jackson library and how to mitigate it
Apr 17, 2021
·
11 min readLFI to RCE on GitLab 12.8.1~12.9.0