


Securing Developer Tools: A New Supply Chain Attack on PHPĪrgument injection, RCE, Supply chain attackīugcrowd - Tale of multiple misconfigurations!! ❌Īccount takeover, OAuth flaw, OTP bypass, Password reset flaw RCE, Memory corruption bug, Format string vulnerabilityĪuthentication bypass, Information disclosure Hacking TMNF: Part 1 - Fuzzing the game server & Part 2 - Exploiting a blind format string Sparsh Kulshrestha & Shashank Bharthwal (VDP) Melting the DNS Iceberg: Taking over your infrastructure Kaminsky styleĮrror based SQL Injection with WAF bypass manual Exploit 100%Īhmed Qaramany & Mahmoud samaha injection, WAF bypassĪ Deep Dive of CVE-2022–33987 (Got allows a redirect to a UNIX socket)Īppsmith Patches Full-Read SSRF Vulnerabilities Reported by CloudSEK Tanto Security team Insecure deserialization, Phar deserialization,
