Skip to main content
Scour
Browse
Getting Started
Login
Sign Up
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Spaceraccoon's Blog
spaceraccoon.dev
You Have One New
Appwntment
: Exploiting
iCalendar
Properties in Enterprise Applications
spaceraccoon.dev
·
195w
Embedding
Payloads
and Bypassing Controls in Microsoft
InfoPath
spaceraccoon.dev
·
204w
Solving DOM
XSS
Puzzles
spaceraccoon.dev
·
223w
2Q21
: New Year's
Reflections
spaceraccoon.dev
·
228w
The
InfoSecurity
Challenge 2021 Full Writeup: Battle Royale for $
30k
spaceraccoon.dev
·
233w
All Your (d)Base Are
Belong
To Us, Part 2: Code Execution in Microsoft Office (
CVE-2021-38646
)
spaceraccoon.dev
·
238w
All Your (d)Base Are
Belong
To Us, Part 1: Code Execution in Apache
OpenOffice
(CVE-2021-33035)
spaceraccoon.dev
·
242w
Down the
Rabbit
Hole: Unusual Applications of OpenAI in Cybersecurity
Tooling
spaceraccoon.dev
·
243w
ROP
and Roll: EXP-301 Offensive Security Exploit Developer (
OSED
) Review and Exam
spaceraccoon.dev
·
256w
Life's a
Peach
(
Fuzzer
): How to Build and Use GitLab's Open-Source Protocol
Fuzzer
spaceraccoon.dev
·
260w
Offensive Security Experienced
Penetration
Tester (
OSEP
) Review and Exam
spaceraccoon.dev
·
270w
Applying
Offensive Reverse Engineering to Facebook
Gameroom
spaceraccoon.dev
·
276w
Supply Chain Pollution: Hunting a 16 Million Download/Week
npm
Package Vulnerability for a
CTF
Challenge
spaceraccoon.dev
·
282w
Imposter Alert: Extracting and Reversing
Metasploit
Payloads
(Flare-On 2020 Challenge 7)
spaceraccoon.dev
·
284w
Beat The Clock: The
CSIT
InfoSecurity
Challenge
spaceraccoon.dev
·
295w
Open
Sesame
: Escalating Open
Redirect
to RCE with Electron Code Review
spaceraccoon.dev
·
300w
Closing the Loop: Practical Attacks and
Defences
for
GraphQL
APIs
spaceraccoon.dev
·
313w
Same Same But Different: Discovering SQL Injections
Incrementally
with
Isomorphic
SQL Statements
spaceraccoon.dev
·
319w
A Tale of Two Formats: Exploiting
Insecure
XML and ZIP File
Parsers
to Create a Web Shell
spaceraccoon.dev
·
326w
Remote Code Execution in Three Acts:
Chaining
Exposed
Actuators
and H2 Database Aliases in Spring Boot 2
spaceraccoon.dev
·
331w
« Page 1
·
Page 3 »
Log in to enable infinite scrolling
Keyboard Shortcuts
Navigation
Next / previous item
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Browse
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help