Timeline
Security research, CTF writeups, blog posts, CVEs, bug bounties, authored challenges, certificates, talks, and achievements ordered by date.
Year
44 / 44 items
-
2026
17 items-
Scanwich Station 14 min read GPNCTF -
Scanwich Station GPNCTF 2026 -
Funny Java Strings? 8 min read Security Research -
Authenticated blind SQL injection in com_finder Joomla CMS -
Authenticated blind SQL injection in com_tags Joomla CMS -
Privilege escalation through com_users batch task Joomla CMS -
xmalloc 11 min read KITCTF -
KITCTF Web Intro Slides -
Authenticated blind SQL injection in PropertyAssign.php ChurchCRM -
Authenticated blind SQL injection in SettingsIndividual.php ChurchCRM -
Authenticated blind SQL injection in EventNames.php ChurchCRM -
Authenticated SQL injection in MemberRoleChange.php ChurchCRM -
Authenticated blind SQL injection in PropertyTypeEditor.php ChurchCRM -
Authenticated blind SQL injection in SettingsUser.php ChurchCRM -
Second-order SQL injection via FundRaiserEditor.php ChurchCRM -
Hack The Box Certified Penetration Testing Specialist Certification -
HTB CPTS 8 min read Certificate
-
-
2025
19 items-
KITCTF #3 at GlacierCTF 2025 KITCTF -
My Flask App 7 min read SEKAICTF -
Fancy Web 16 min read SEKAICTF -
Smile at me GPNCTF 2025 -
Smile at me 11 min read GPNCTF -
FluxKITtens #6 at Google CTF 2025 KITCTF -
DHM 2025 participation DHM -
Leaf 6 min read SMILEYCTF -
Everyone loves canteen food 5 min read CSCG -
vidplow 4 min read CSCG -
KDF dream 8 min read CSCG -
CSCG 2025 top 10 global CSCG -
Air smeller 7 min read CSCG -
Fantastic Doom 5 min read EHAX -
Cash Memo 10 min read EHAX -
KITCTF #3 at SwampCTF 2025 KITCTF -
Tar boom 4 min read DVCTF -
Gamedev 5 min read LACTF -
A Minecraft Movie 9 min read UMDCTF
-
-
2024
8 items
No indexed content matches the current filters.