Wyatt Dahlenburg (@wdahlenb) 's Twitter Profile
Wyatt Dahlenburg

@wdahlenb

Developer and Hacker

ID: 756207360

linkhttps://wya.pl calendar_today14-08-2012 01:32:28

2,2K Tweet

657 Followers

308 Following

RyotaK (@ryotkak) 's Twitter Profile Photo

I recently developed and posted about a technique called "First sequence sync", expanding James Kettle's single packet attack. This technique allowed me to send 10,000 requests in 166ms, which breaks the packet size limitation of the single packet attack. flatt.tech/research/posts…

Wyatt Dahlenburg (@wdahlenb) 's Twitter Profile Photo

CVE-2024-20492 is out. Probably one of my favorite privilege escalations to date! sec.cloudapps.cisco.com/security/cente…

Wyatt Dahlenburg (@wdahlenb) 's Twitter Profile Photo

CVE-2024–20492 — A Privilege Escalation in Cisco Expressway Proof of Concept and Writeup: engineering.statefarm.com/cve-2024-20492…

Nick Frichette (@frichette_n) 's Twitter Profile Photo

Need to hack thousands of AWS customers? What about on internal AWS systems? Datadog Security Research found that a number of tools, including one published by AWS, are susceptible to name confusion attacks, leading to RCE in vulnerable environments! securitylabs.datadoghq.com/articles/whoam…

Wiz (@wiz_io) 's Twitter Profile Photo

#IngressNightmare: Wiz Research uncovers a critical vulnerability in Ingress-NGINX 🚨 Wiz Research found a novel attack vector in one of Kubernetes's most fundamental projects, Ingress-NGINX, which is rated CVSS 9.8.

#IngressNightmare: Wiz Research uncovers a critical vulnerability in Ingress-NGINX 🚨

Wiz Research found a novel attack vector in one of Kubernetes's most fundamental projects, Ingress-NGINX, which is rated CVSS 9.8.
Wyatt Dahlenburg (@wdahlenb) 's Twitter Profile Photo

Skipping Defcon this year to travel around the world! Excited to work on all of my unfinished blog posts, tools, and research. I'm taking the leap to do bug bounty for a year and living the nomadic lifestyle.

Skipping Defcon this year to travel around the world!

Excited to work on all of my unfinished blog posts, tools, and research. I'm taking the leap to do bug bounty for a year and living the nomadic lifestyle.
ezzer (@ez_z3r) 's Twitter Profile Photo

Made a writeup on a critical CVSS 10.0 vulnerability I've recently found. Check it out, maybe you'll manage to make into a full config independent RCE. blog.z3r.ru/posts/spring-c…

ᴅᴀɴɪᴇʟ ᴍɪᴇssʟᴇʀ (@danielmiessler) 's Twitter Profile Photo

My thoughts on whether or not prompt injection is a vulnerability or a delivery mechanism. Pros and cons for both sides of the debate... danielmiessler.com/blog/is-prompt…

Wyatt Dahlenburg (@wdahlenb) 's Twitter Profile Photo

Congrats! Skyvern is one of the cooler tools I’ve played around with in the past few months. Tons of opportunities with web automation and it works really well.