Web Application Firewall Exploit: If you cannot protect yourself, who can you protect?

May 12, 2020

Hi guys,As my previous article about web application firewall (WAF) bypass / exploit series, today I will write my experience when exploit another popular WAF from a local vendor in Vietnam which also has a bug bounty platform, this is the first time I reported a vulnerability to a bug bounty platform in Vietnam. However, […]

Web Application Security Roadmap

April 26, 2020

Hi guys, Như các thông báo đã được đăng trên fanpage của hackemall, trong chuỗi các topic của HackerDEX, hôm nay mình xin được chia sẻ con đường mình đã đi cũng như kinh nghiệm của mình về một mảng mà đa số các script kiddies / hacker / gosu … đều đã từng trải […]

MeePwnCTF2017 TooManyCrypto Writeup

April 18, 2020

Setup challenge from https://github.com/tsug0d/MyAwesomeWebChallenge/

Akamai Web Application Firewall Bypass Journey: Exploiting “Google BigQuery” SQL Injection Vulnerability

March 31, 2020

Hi guys, long time no write.As some previous articles in my blog only focus on CTF writeups, so in this time and maybe the next time, I want to write another topic about my research also doing bug bounty hunter.So as the topic name above, in this time I will write about my experience when […]

SVATTT2019 Pentest Writeup

February 26, 2020

Setup challenge from https://github.com/tsug0d/MyAwesomeWebChallenge/

PHP Serialize & Unserialize

February 9, 2020

Show how php Serialize & Unserialize works

SVATTT2019 HackEmAll Writeup

February 9, 2020

Setup challenge from https://github.com/tsug0d/MyAwesomeWebChallenge/

-->