A minimally designed blog that focuses on security.

CVE-2025-29513: Stored XSS in NodeBB Admin API token generator


Stored XSS attack in the Admin API token generation of NodeBB CMS
Read more ⟶

CVE-2025-29512: Stored XSS in the blacklist IP functionality


Stored XSS attack in the blacklist IP functionality of NodeBB CMS
Read more ⟶

CVE-2024-57041: Stored XSS in NodeBB


Stored XSS attack in about me section of NodeBB CMS
Read more ⟶

Practical Junior Mobile Tester by TCM Security


Practical Junior Mobile Tester by TCM Security
Read more ⟶

Hack The Box Certified Bug Bounty Hunter (HTB CBBH)


Hack The Box Certified Bug Bounty Hunter (HTB CBBH)
Read more ⟶

eWPT by INE/eLearnSecurity


eWPT by INE/eLearnSecurity
Read more ⟶

eJPT by INE/eLearnSecurity


eJPT by INE/eLearnSecurity
Read more ⟶