Blog
Writeups, notes, and longer things worth reading properly.
Writeups, notes, and longer things worth reading properly.
Why a standard that should be simple becomes a mess when retailers validate absolutely nothing.
How I found a hidden management backdoor on a consumer router from 2016. And why it's still there.
A single misconfigured API route exposed student data across thousands of schools. Here's how I found it.