¯\_(ツ)_/¯ (@chocapikk_) 's Twitter Profile
¯\_(ツ)_/¯

@chocapikk_

I didn't choose this path for fun.
I found passion while trying to escape something that never left.
I break, build, and help, it keeps me going.

ID: 1519703440053653504

linkhttps://chocapikk.com calendar_today28-04-2022 15:42:05

1,1K Tweet

2,2K Followers

221 Following

Gray Hats (@the_yellow_fall) 's Twitter Profile Photo

WPProbe is a fast and efficient WordPress plugin scanner that leverages REST API enumeration (?rest_route) to detect installed plugins without brute-force meterpreter.org/wpprobe-a-fast…

LeakIX (@leak_ix) 's Twitter Profile Photo

🚨 New plugin for CrushFTP's CVE-2025-2825/CVE-2025-31161 is up. While enumerating users to validate vulnerable instances we noticed a pattern. It's on all instances we scanned for, can you see it? What do you make of it?

🚨 New plugin for CrushFTP's CVE-2025-2825/CVE-2025-31161 is up.

While enumerating users to validate vulnerable instances we noticed a pattern.

It's on all instances we scanned for, can you see it? What do you make of it?
LeakIX (@leak_ix) 's Twitter Profile Photo

🚨 New plugin for ViteJS's CVE-2025-30208 is up. It's dev, nothing wrong can happen right? Have fun. Source: x.com/phithon_xg/sta… Thx: ¯\_(ツ)_/¯

🚨 New plugin for ViteJS's CVE-2025-30208  is up.

It's dev, nothing wrong can happen right?

Have fun.

Source: x.com/phithon_xg/sta…
Thx: <a href="/Chocapikk_/">¯\_(ツ)_/¯</a>
¯\_(ツ)_/¯ (@chocapikk_) 's Twitter Profile Photo

Hello guys, I've already talked about WPProbe, my tool to fingerprint WordPress through its REST API. This time, I'm sharing some behind-the-scenes: the idea behind it, and a few struggles I had along the way. Not that complex, but worth the effort. 📝 chocapikk.com/posts/2025/wpp…

Danny Willems (@dwillems42) 's Twitter Profile Photo

Real cypherpunks are also not on Twitter. It's not because they're not heard in Web3 that they are not doing anything. Have you been to FOSDEM @[email protected]? Have you been to any real FOSS conferences? Have you been building projects without money in mind first? Have you been to conferences

¯\_(ツ)_/¯ (@chocapikk_) 's Twitter Profile Photo

🚨 Two XSS vulnerabilities found in Vembu BDRSuite ≤ 7.5.0.1 I've just published a short write-up about two XSS bugs I discovered in Vembu BDRSuite. They were acknowledged and patched in version 7.6.0, following my report. 📝 Read the write-up: 👉 chocapikk.com/posts/2025/bdr…

🚨 Two XSS vulnerabilities found in Vembu BDRSuite ≤ 7.5.0.1

I've just published a short write-up about two XSS bugs I discovered in Vembu BDRSuite.

They were acknowledged and patched in version 7.6.0, following my report.

📝 Read the write-up:

👉 chocapikk.com/posts/2025/bdr…
Franso (@fransosiche) 's Twitter Profile Photo

🚩 Direction le Cyber Ninja CTF organisé par Oteria Cyber School pour les lycéens ! Dans la vidéo : 🔍 Le déroulé du CTF 🧩 Les types de défis 🛠️ Et 3 challenges que j’ai créés (avec solution 👀) 📺 youtu.be/wgxBbmK9PDg

🚩 Direction le Cyber Ninja CTF organisé par <a href="/OteriaCS/">Oteria Cyber School</a> pour les lycéens !

Dans la vidéo :

🔍 Le déroulé du CTF
🧩 Les types de défis
🛠️ Et 3 challenges que j’ai créés (avec solution 👀)

📺 youtu.be/wgxBbmK9PDg
Gray Hats (@the_yellow_fall) 's Twitter Profile Photo

Critical RCE Vulnerability in Erlang/OTP SSH Server Impacts Multiple Cisco Products Critical RCE vulnerability (CVE-2025-32433) in Erlang/OTP affects Cisco products. Unauthenticated attackers can execute code remotely. Patch now! securityonline.info/critical-rce-v…

¯\_(ツ)_/¯ (@chocapikk_) 's Twitter Profile Photo

I'm back! 🤘 Just reproduced CVE-2025-32432 and submitted a Metasploit module for it. This one targets Craft CMS RCE in versions 3.x, 4.x, and 5.x < 5.6.17. Check out the PR! 🚀 🔗 github.com/rapid7/metaspl…

I'm back! 🤘 Just reproduced CVE-2025-32432 and submitted a Metasploit module for it. This one targets Craft CMS RCE in versions 3.x, 4.x, and 5.x &lt; 5.6.17. Check out the PR! 🚀

🔗 github.com/rapid7/metaspl…
Chirag Artani (@chirag99artani) 's Twitter Profile Photo

CraftCMS RCE CVE-2025-32432 POC / EXP- github.com/Sachinart/CVE-… Netlas.io 63K websites using craftcms nt.ls/eiOCw (one click download). MY POC has less impact , further can exploit can try -> x.com/Chocapikk_/sta… ¯\_(ツ)_/¯ 's / github.com/Chocapikk/CVE-… POC .

CraftCMS RCE CVE-2025-32432

POC / EXP- github.com/Sachinart/CVE-…

<a href="/Netlas_io/">Netlas.io</a> 63K websites using craftcms nt.ls/eiOCw (one click download).

MY POC has less impact , further can exploit can try -&gt; x.com/Chocapikk_/sta… <a href="/Chocapikk_/">¯\_(ツ)_/¯</a> 's / github.com/Chocapikk/CVE-…  POC .