0xc0ffee / Ilyass El Hadi
@0xc0ffee_
Appsec stuff @Mandiant/GCloud, bug bounty hunter, occasional CTF player. Opinions ≠ employer’s.
ID: 381590375
28-09-2011 15:59:11
325 Tweet
1,1K Followers
507 Following
My writeup for the FacebookCTF "Secret Note Keeper" challenge. Thank you Facebook Security for this great event! #ctf #fbctf #facebookctf 0xc0ffee.io/blog/FacebookC…
Here are my slides for "Cache Me If You Can: Messing with Web Caching", presented OWASP AppSec California & NorthSec! 🎉 Material includes: - Web Caching 101 - Web Cache Deception - Edge Side Include Injection - Web Cache Poisoning ...with real bugs showcased! drive.google.com/open?id=19IedR…
Grouse Mountain ⛰ with André Baptista ramsexy Sébastien Morin Joel Margolis (teknogeek) HackerOne
Had a fun week collabing with 0xc0ffee / Ilyass El Hadi that lead to some cool SSRFs in a PDF generator. Looking forward to working with him again! #BugBounty
I wrote a thing with my colleague 0xc0ffee / Ilyass El Hadi & Charles Prevost, about how we've been leveraging offensive webapp testing during Red Teams. 4 use cases of external breaches using webapps inside, enjoy! #appsec cloud.google.com/blog/topics/th…