peterjson (@peterjson) 's Twitter Profile
peterjson

@peterjson

Offensive Security Engineer at @calif_io

ID: 968764610080854017

calendar_today28-02-2018 08:27:36

202 Tweet

2,2K Followers

1,1K Following

Christophe Tafani-Dereeper (@christophetd) 's Twitter Profile Photo

We published a post that takes a deep dive into EKS IAM mechanisms, and techniques to pivot from compromised Kubernetes workloads to an AWS account securitylabs.datadoghq.com/articles/amazo…

We published a post that takes a deep dive into EKS IAM mechanisms, and techniques to pivot from compromised Kubernetes workloads to an AWS account

securitylabs.datadoghq.com/articles/amazo…
Dan Garfield (@todaywasawesome) 's Twitter Profile Photo

Creating a cluster in GKE: gcloud container clusters create sample-cluster Creating a cluster in EKS: oh sweet summer child...

Calif (@calif_io) 's Twitter Profile Photo

In a recent engagement, we encountered a target running CraftCMS, and discovered a Remote Code Execution vulnerability that allowed us to compromise the target. blog.calif.io/p/craftcms-rce CC yeuchimse

Calif (@calif_io) 's Twitter Profile Photo

If you use cert-manager.io in AWS EKS, be aware of a privesc vector that leads to full cluster compromise. We recommend revoking pod creation permission and switching to domain verification using DNS. See the update at the end of this blog post: blog.calif.io/p/privilege-es…

Nguyen Hung (@b4nhm1) 's Twitter Profile Photo

CVE-2023-49105 WebDAV Api Authentication Bypass using Pre-Signed URLs POC Lazy coder + ChatGPT => nocode cc Nguyen Anh Tien github.com/0xfed/ownedclo…

Calif (@calif_io) 's Twitter Profile Photo

New blog post: in a recent engagement, we turned a simple XSRF in Argo CD to a shell with cluster admin privileges. No fix is available. We recommend hosting Argo CD on an isolated domain. Details: blog.calif.io/p/argo-cd-csrf

Calif (@calif_io) 's Twitter Profile Photo

Wormable Substack XSS: blog.calif.io/p/wormable-sub… It must have been years since the last time a wormable XSS was found in a major social media website. This beautiful type confusion XSS attack vector is a gift that keeps on giving. But most of all, samy kamkar is our hero!

tuo4n8 (@tuo4n8) 's Twitter Profile Photo

Submitted this bug to ZDI a long time ago, but they weren’t interested 🥲. Later sent to Oracle, marked dup of CVE-2023-22047. CVSS 7.5 but leads to unauth RCE. Fortunately, some big programs accepted it. Check exploit here : github.com/tuo4n8/CVE-202… #BugBounty #InfoSec #Oracle

Rad (@rad9800) 's Twitter Profile Photo

If you can motivate yourself to spend 8+ hours a day, 5 days a week to read through: - Atlassian - Jira - Slack - GitHub - Other internal SaaS applications without guaranteed results, you'll be an amazing red teamer.

Calif (@calif_io) 's Twitter Profile Photo

“Vibe Hacking”: Abusing Developer Trust in Cursor and VS Code Remote Development blog.calif.io/p/vibe-hacking…

Yuval Avrahami (@yuvalavra) 's Twitter Profile Photo

We hacked the AWS JavaScript SDK, a core library powering the entire @AWScloud ecosystem - including the AWS Console itself 🤯 How did we do it? Just two missing characters was all it took. This is the story of #CodeBreach 🧵👇

We hacked the AWS JavaScript SDK, a core library powering the entire @AWScloud ecosystem - including the AWS Console itself 🤯

How did we do it? Just two missing characters was all it took.

This is the story of #CodeBreach 🧵👇
Calif (@calif_io) 's Twitter Profile Photo

A Race Within A Race: Exploiting CVE-2025-38617 in Linux Packet Sockets. A step-by-step guide to exploiting a 20-year-old bug in the Linux kernel to achieve full privilege escalation and container escape, plus a cool bug-hunting heuristic. open.substack.com/pub/calif/p/a-…

thAI Duong (@xorninja) 's Twitter Profile Photo

We have some exciting news to share: Blacktop is joining Calif to work on a range of R&D projects focused on Apple and AI security. If you work in the Apple security ecosystem, he’s already a household name. He’s the creator of: * ipsw – the ubiquitous Apple firmware

Calif (@calif_io) 's Twitter Profile Photo

MAD Bugs: Claude Wrote a Full FreeBSD Remote Kernel RCE with Root Shell (CVE-2026-4747) To our knowledge, this is the first remote kernel exploit both discovered and exploited by an AI. blog.calif.io/p/mad-bugs-cla…