Calif
@calif_io
Official account of calif.io. We are hiring offsec.calif.io.
ID: 1632109271700889600
https://calif.io 04-03-2023 20:02:32
37 Tweet
1,1K Followers
12 Following
We express our gratitude to the sponsors: VNG Security Response Center , Verichains , Calif, Binary Ninja(Vector 35 ) and other anonymous supporters who contributed to TetCTF2024. See You In TetCTF 2025, Happy New Year 🥰 ctf.hackemall.live/final.html
We analyzed a LockBit v3 variant, and rediscovered a bug that allows us to decrypt some data without paying the ransom. We also found a design flaw that may cause permanent data loss. This is a joint work with Chuong Dong. Enjoy! blog.calif.io/p/dissecting-l…
Wormable Substack XSS: blog.calif.io/p/wormable-sub… It must have been years since the last time a wormable XSS was found in a major social media website. This beautiful type confusion XSS attack vector is a gift that keeps on giving. But most of all, samy kamkar is our hero!