Security Blog

Learning, breaking, and documenting.

Home Search About Archive

Posts Archive

Most Recent Posts

    A Month of Supply Chain Failures: March 2026 in Review - 4 April 2026

    March 2026

    How a Symlink in Jenkins Became a Controller RCE: Reversing CVE-2026-33001 - 30 March 2026

    February 2026

    Reversing CVE-2026-25526: From Patch Diff to File Read in HubSpot's Jinjava Template Engine - 12 February 2026

    January 2026

    A Beginner’s Guide to Reversing React2Shell in Next.js from Scratch (CVE-2025-66478) - 13 January 2026

Featured Write-ups

  • JetBrains TeamCity Authentication Bypass & Path Traversal
    Article published on 0daylabs
Buy Me A Coffee