Explore the arbitrary user login vulnerability found in a park system. This article analyzes the code and discusses potential security risks identified by QianA
This article details the weak password brute force and session key attack vulnerabilities found during a penetration test of a university's cloud platform. Lear
Discover how a hacker exploited vulnerabilities in the BayBay website's eip-plus system. Learn about the steps taken to gain access and the challenges faced dur
Explore the details of the Apache Commons Text RCE vulnerability (CVE-2022-42889) affecting versions from 1.5.0 to 1.10.0. Understand the attack vectors and mit
This article details a penetration test conducted on the author's school system. Key steps include information gathering, login with default credentials, bypass