Homepage
Open in app
Sign inGet started

Alertot’s blog

  • Chile Security Survey
  • alertot's website
  • “Web scraping considered dangerous”: Leaking files from the spider’s host

    This is the next post of this serie called “Web scraping considered dangerous”. You can read the previous post here and as an update, my…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Jul 14, 2019

    “Web scraping considered dangerous”: Exploiting the telnet service in scrapy < 1.5.2

    Disclaimer: scrapy 1.5.2 has been released on January 22th, to avoid being exploited you must disable telnet console (enabled by default)…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    May 13, 2019
    Un buffer overflow para gobernar Chile

    Un buffer overflow para gobernar Chile

    El año pasado hubo en Chile una charla titulada “Chile Exposed: un puerto para gobernarlos a todos” haciendo referencia al anillo del…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Apr 15, 2019
    Un sigiloso ataque en SII.cl

    Un sigiloso ataque en SII.cl

    [This post is only available in Spanish because the target audience is in Chile]
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Feb 6, 2019
    Metasploit Community CTF 2018 writeup

    Metasploit Community CTF 2018 writeup

    This weekend we participated in Metasploit Community CTF and got the 12th place out of 1000 registered teams (but according to organizers…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Dec 4, 2018
    New variant in wp-gdpr-compliance vulnerability and fixing it with virtual patching

    New variant in wp-gdpr-compliance vulnerability and fixing it with virtual patching

    On Tuesday, I wrote about a serialization vulnerability fixed in the last version of wp-gdpr-compliance plugin.
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Nov 15, 2018
    Serialization flaw in wp-gdpr-compliance

    Serialization flaw in wp-gdpr-compliance

    Some days ago the people at Wordfence wrote about a wildly exploited vulnerability in wp-gdpr-compliance plugin. We have been monitoring…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Nov 13, 2018
    8dot8 2018 CTF Writeup

    8dot8 2018 CTF Writeup

    El pasado fin de semana se realizó una nueva edición de 8dot8, la conferencia de seguridad más importante de Chile. Había un CTF…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Oct 30, 2018
    Brief introduction and Ekoparty talk!

    Brief introduction and Ekoparty talk!

    This year I’m going to speak at ekoparty and that is special. Not only because it’s the most important security conference in South…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    Sep 12, 2018

    Getting the domain list of Chile

    Update 13/12/2019: En el último tiempo, ha habido una gran discusión por las solicitudes de dominios a NIC.cl por parte de particulares…
    Go to the profile of Claudio Salazar
    Claudio Salazar
    May 30, 2018
    Spreading the word

    Spreading the word

    Go to the profile of Claudio Salazar
    Claudio Salazar
    Sep 25, 2017
    alertot and wCry

    alertot and wCry

    Go to the profile of Claudio Salazar
    Claudio Salazar
    May 15, 2017
    About alertotLatest StoriesArchiveAbout MediumTermsPrivacy