Guilherme
@gui_scombatti
amsda
ID: 148917590
27-05-2010 23:27:48
3,3K Tweet
928 Followers
458 Following
I hope everyone got some rest after DownUnderCTF this weekend. My colleague hashkitten wrote up a blog post on a novel technique for SQL Injection in PDO's prepared statements, required to exploit the “legendary” challenge, which only got one solve: slcyber.io/assetnote-secu…
Google VRP (Google Bug Hunters) disclosed my most impactful client-side report to date: bughunters.google.com/reports/vrp/wG… TL;DR An attacker could've gained access to Gemini Code Assist Tools (GitLab, GitHub etc.) configured by the victim
Facebook Messenger for Windows RCE worth $112K via Slack/Viber DLL files override using path traversal in attachments by Dzmitry Lukyanenko vulnano.com/2025/09/remote…