This article details the weak password brute force and session key attack vulnerabilities found during a penetration test of a university's cloud platform. Lear
Explore the arbitrary user login vulnerability found in a park system. This article analyzes the code and discusses potential security risks identified by QianA
Learn how to effectively identify whether a target application uses Fastjson or Jackson components in Java ecosystems. This article discusses the differences an
Learn how to bypass forced app updates during penetration testing by leveraging tips on frida and hook techniques. Discover methods to handle version checks and
Explore detailed techniques used in a practical case study involving Windows exploitation, including the deployment of shellcode via RDP and SMB, as well as pas