theyhack.bsky.social
@theyhack.bsky.social
infosec | security research: https://theyhack.me/cve/
Opinions are mine.
lol fr. I always see stuff like this in products and think of how hard companies try to make so much of tech seem like it's magic, and not just some HTTP request, probably to a spring boot API...
June 2, 2025 at 5:28 PM
news.ycombinator.com/item?id=4401...

IANA anything to do with this field, but there is some decent discussion on this study here.
Energy drinks linked to rise in colorectal and blood cancer | Hacker News
news.ycombinator.com
May 18, 2025 at 4:54 PM
That was a really fun read!

Heads up, I _think_ there are a couple typos in this line

> Just like that, we've seemingly replicated CVE-2025-4427 - but as always, we cant't help but wonder about t why this vulnerability works this way.
May 17, 2025 at 3:08 AM
That one line issue with XXE, I seem to remember coming across something when I had the same issue where a Java version change causes newlines to throw an exception vs older java would just send them. I _think_ it was version 11, but google is not cooperating today.
May 12, 2025 at 1:16 PM
jinja2.exceptions.UndefinedError: 'randstr' is undefined 👀 😅
March 4, 2025 at 10:06 PM
Yep.

Then I accidentally click one of the columns like `host` and it changes without me realizing it, then I go insane thinking burp is broken 😅

I kinda wish you could lock that somehow...
February 10, 2025 at 2:02 PM