m0z (@loosesecurity) 's Twitter Profile
m0z

@loosesecurity

The greatest trick the devil ever pulled, was convincing the world that cyber security existed.

ID: 1073952395397398528

linkhttps://m0z.ie/ calendar_today15-12-2018 14:46:18

2,2K Tweet

7,7K Followers

152 Following

m0z (@loosesecurity) 's Twitter Profile Photo

Finally arriving today, 32GB RAM, 2TB SSD and a RTX 5070. Can't wait for it to still struggle to handle all the CTF web docker containers. πŸ˜…

m0z (@loosesecurity) 's Twitter Profile Photo

It doesn't feel real seeing Ireland on this list. I've been playing ECSC since 2021 and finishing this high never seemed remotely possible. Hopefully see more improvements next year too. πŸ˜…

m0z (@loosesecurity) 's Twitter Profile Photo

Following on from this, I found that it's particularly useful if your value is passed into an innerHTML sink. For example, if it's parsed as a URL then your XSS payload will be URL encoded, but changing it to use https:: will allow it to be rendered as text and execute.