PinnedCISSP-ISSAP: My summaryAfter a long(ish) wait I received my CISSP-ISSAP (Information Systems Security Architecture Professional) certification today.Aug 15, 20231Aug 15, 20231
PinnedCISSP: Exam thoughts and learning materialsI often read that the exam is tough and full of trick questions that try to guide you to the wrong answer. In my case, none of the…May 4, 2022May 4, 2022
PinnedYet another OSCP storyFinally, after a long COVID-19 induced delay, I recently received my printed certificate.Sep 17, 20201Sep 17, 20201
Published inInfoSec Write-upsWrite-up: Information disclosure in version control history @ PortSwigger AcademyThis write-up for the lab Information disclosure in version control history is part of my walkthrough series for PortSwigger’s Web Security…Feb 6, 2023Feb 6, 2023
Published inInfoSec Write-upsWrite-up: Authentication bypass via encryption oracle @ PortSwigger AcademyThis write-up for the lab Authentication bypass via encryption oracle is part of my walk-through series for PortSwigger’s Web Security…Dec 20, 2022Dec 20, 2022
Published inInfoSec Write-upsWrite-up: DOM XSS in innerHTML sink using source location.search @ PortSwigger AcademyThis write-up for the lab DOM XSS in innerHTML sink using source location.search is part of my walkthrough series for PortSwigger’s Web…Dec 13, 2022Dec 13, 2022
Published inInfoSec Write-upsWrite-up: SQL injection with filter bypass via XML encoding @ PortSwigger AcademyThis write-up for the lab SQL injection with filter bypass via XML encoding is part of my walk-through series for PortSwigger’s Web…Dec 12, 2022Dec 12, 2022
Published inInfoSec Write-upsWrite-up: DOM XSS in document.write sink using source location.search @ PortSwigger AcademyThis write-up for the lab DOM XSS in document.write sink using source location.search is part of my walkthrough series for PortSwigger’s…Dec 10, 2022Dec 10, 2022
Published inInfoSec Write-upsWrite-up: Source code disclosure via backup files @ PortSwigger AcademyThis write-up for the lab Source code disclosure via backup files is part of my walkthrough series for PortSwigger’s Web Security Academy.Nov 30, 2022Nov 30, 2022
Published inInfoSec Write-upsWrite-up: Basic server-side template injection (code context) @ PortSwigger AcademyThis write-up for the lab Basic server-side template injection (code context) is part of my walk-through series for PortSwigger’s Web…Nov 28, 2022Nov 28, 2022