Blog
The cyber security blog where research and innovation are shared
When we're on LinkedIn we may want to protect our privacy, for example by hiding our last name. In this article we will show a technique to deanonymize any LinkedIn account by revealing the hidden last name.
How we turned an XSS into an Account Takeover by exploiting the browser's autocomplete feature to steal user credentials.
We deep-dive into how it has been possible to find two XXE 0day vulnerabilities in PHPSPreadsheet, bypassing the actual defences and subsequent fixes.
Submit a new CVE may not be so intuitive. In this article we look at all the steps and answer common questions.
We are using Open Source INTelligence (OSINT) to show how to find the address of the house by using its pictures in a real estate advertisement.
We are using Open Source INTelligence (OSINT) to show how it is possible to determine the exact location where a picture was taken.








