Pocas Notes.

Codegate 2022 Write Up


This article is about write-up for the Codegate 2022. there is only two three challenges, all of which contain an XSS, SSRF, Xpath Injection bug
Read more ⟶

NASA, Remote Code Excution (0-Day Exploit)


The article is about 0-day, RCE vulnerability in NASA web service. we could analyze the code of service through the docker file > https://hub.docker.com/r/nasapsg/psg.
Read more ⟶

Hayyim CTF 2022 Write Up


This article is about write-up for the Hayyim CTF 2022. there is only four web challenges, all of which contain XSS and SQL Injection and Logic Bug on Gnuboard bug
Read more ⟶

Real World CTF 4th Hack into Skynet Write Up


This article is about write-up for the Real World CTF 4th. there is only one web challenges, which contain SQL Injection and Logic Bug on Gnuboard bug
Read more ⟶

0-Day, Prototype Pollution in utils.js


The article is about 0-day i found first time in open-source
Read more ⟶