Embrace the Suck!
When handling customer support for PentesterLab, we often get emails from people who can’t solve a challenge:
“… I have been working on this challenge for the past 3 days and I really can’t get it to work.”
JSON Web Tokens (JWT) are widely used for authentication in modern applications. As their use increases, so does the importance of understanding common attacks against them, such as algorithm confusion attacks. For a long…
When building a Capture-The-Flag (for a conference), you need to have a good mix of very easy…
One of the common advice when trying to improve security at scale is to invest in QA. In this article, we are going to cover some…
Since it’s something I’m really passionate about, I have decided to spend more time writing about application security at scale.
In this short article, I’m going to discuss a little bit on the exploitability of CVE-2019–5420.
One of the questions I often get asked is whether or not I recommend going to university/engineering school/… or…
Tell me a bit more about yourself? Current occupation? Aspirations?