Max Yaremchuk
@0xw2w
I’m looking for bugs and overcoming limitations - Application security. Senior meme engineer
ID: 2525010779
https://securityrise.com/about 03-05-2014 08:26:24
2,2K Tweet
6,6K Followers
567 Following
How do we turn bad SSRF (blind) into good SSRF (full response)? The Assetnote Security Research team at Searchlight Cyber used a novel technique involving HTTP redirect loops and incremental status codes that leaked the full HTTP resp. It may work elsewhere! slcyber.io/assetnote-secu…
"Who's SHA is it Anyway: Bypassing Google Cloud Build Comment Control for $30,000" by Adnan Khan adnanthekhan.com/posts/cloud-bu…
Facebook Messenger for Windows RCE worth $112K via Slack/Viber DLL files override using path traversal in attachments by Dzmitry Lukyanenko vulnano.com/2025/09/remote…