R3zk0n

Research and Learnings

Home Research Learnings Search About Archive

Server-Side Template Injection (SSTI)

October 2, 2025

{{ ''.__class__.__mro__[2].__subclasses__()[40]('/etc/passwd').read() }}
Read More

Server-Side Request Forgery (SSRF)

October 2, 2025

=======================================================
Read More

Server-side Prototype Pollution

October 2, 2025

+ https://github.com/Kirill89/prototype-pollution-exploits
Read More

Semgrep

October 2, 2025

docker run --rm -v \"${PWD}:/src\" returntocorp/semgrep semgrep --config=auto
Read More

Security Breach

October 2, 2025

Research notes and findings.
Read More

Scoping Requirements

October 2, 2025

The objective of the scoping meeting is to gain an understanding of what is to be tested, why the test is being performed, and any particular risks and concerns that the team has.
Read More
« Prev 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 Next »