-->

Talking about JSONP Hijacking Vulnerability

JSONP  The full name of JSONP is JSON with Padding, a solution based on JSON format to solve cross-d…

A Talk About Java Serialization and Deserialization

Preface The current popularity of Java security can be said to be a must-know for the red team. I on…

How to Fix MSDT Vulnerability using SCCM and Intune | CVE-2022-30190

Introduction Let’s check how to FIX MSDT Vulnerability using SCCM and Intune (CVE-2022-30190). You c…

A Brief Summary of Primary Interview of Security Engineer

Pre-Knowledge Server-related information (real IP, system type, version open port, WAF, etc.) Websit…

Multiple Vulnerabilities in KaiOS Pre-installed Mobile Applications

I found multiple HTML injection vulnerabilities in several KaiOS mobile applications that are pre-…