Akshansh
akshansh.bsky.social
Akshansh
@akshansh.bsky.social
Security engineer and hacker,
I find bugs for a living hope i find here too :)
Reposted by Akshansh
Spent some time researching #CVE-2024-11477, the new #7zip CVE and made a writeup about my work on it. Let me know what you think! github.com/TheN00bBuild...
GitHub - TheN00bBuilder/cve-2024-11477-writeup: CVE-2024-11477 7Zip Code Execution Writeup and Analysis
CVE-2024-11477 7Zip Code Execution Writeup and Analysis - TheN00bBuilder/cve-2024-11477-writeup
github.com
November 29, 2024 at 6:33 AM
Reposted by Akshansh
My latest blog post is live! nastystereo.com/security/cro...

Read how to send a cross-site POST without including a Content-Type header (without CORS). It even works with navigator.sendBeacon
November 27, 2024 at 9:10 AM
Reposted by Akshansh
Handling Cookies is a Minefield:

Inconsistencies in the HTTP cookie specification and its implementations have caused a situation where countless websites (including Facebook, Netflix, Okta, WhatsApp, Apple, etc.) are one small mistake away from locking their users out.

grayduck.mn/2024/11/21/h...
November 21, 2024 at 5:11 PM
The team behind the scenes would be working bery hard to keep it running smooth and add new things all the best guys !!
this number gets more insane every day
April 25, 2023 at 5:36 PM