Hacker Newsnew | past | comments | ask | show | jobs | submit | pentestercrab's submissionslogin
1.Nastystereo.com (nastystereo.com)
1 point by pentestercrab 2 days ago | past | discuss
2.Ruby 4.0 Universal RCE Deserialization Gadget Chain (elttam.com)
78 points by pentestercrab 29 days ago | past | 22 comments
3.The Sunlight CT Log (sunlight.dev)
1 point by pentestercrab 29 days ago | past
4.Cruising for Shells in Flowise – 6 RCEs That Rode Flowise Low and Slow (elttam.com)
1 point by pentestercrab 39 days ago | past
5.When Dawkins met Claude – Could this AI be conscious? (unherd.com)
64 points by pentestercrab 4 months ago | past | 434 comments
6.Ruby Array Pack Bleed (nastystereo.com)
62 points by pentestercrab 8 months ago | past | 1 comment
7.Ruby Array Pack Bleed – Impacts Ruby 1.6.7 to 4.0.0 (nastystereo.com)
9 points by pentestercrab 8 months ago | past
8.Inline Style Exfiltration: leaking data with chained CSS conditionals (portswigger.net)
1 point by pentestercrab on Aug 27, 2025 | past
9.Marshal madness: A brief history of Ruby deserialization exploits (trailofbits.com)
25 points by pentestercrab on Aug 20, 2025 | past | 4 comments
10.Breaking the Sorting Barrier for Directed Single-Source Shortest Paths (arxiv.org)
99 points by pentestercrab on Aug 9, 2025 | past | 3 comments
11.New Method to Leverage Unsafe Reflection and Deserialisation to RCE on Rails (elttam.com)
1 point by pentestercrab on March 5, 2025 | past
12.Escaping Ruby's Gem:SafeMarshal Sandbox (nastystereo.com)
2 points by pentestercrab on Jan 10, 2025 | past | 1 comment
13.Escaping Ruby's Gem:SafeMarshal Sandbox (nastystereo.com)
3 points by pentestercrab on Dec 26, 2024 | past
14.RubyGem's Gem:SafeMarshal buffer overrun with length larger than fit into a byte (github.com/rubygems)
1 point by pentestercrab on Dec 7, 2024 | past
15.CORS Vulnerabilities in Go: Vulnerable Patterns and Lessons (pentesterlab.com)
1 point by pentestercrab on Dec 3, 2024 | past
16.Shiny Vulnerabilities in R's Most Popular Web Framework (nastystereo.com)
1 point by pentestercrab on Dec 2, 2024 | past
17.PentesterLab: Web Hacking and Security Code Review 600 exercises and 700 videos (pentesterlab.com)
1 point by pentestercrab on Nov 27, 2024 | past
18.Cross-Site Post Requests Without a Content-Type Header – CSRF Attack (nastystereo.com)
2 points by pentestercrab on Nov 27, 2024 | past
19.Execute commands by sending JSON? Ruby deserialization vulnerabilities (github.blog)
2 points by pentestercrab on Nov 25, 2024 | past
20.JWT Libraries Block Algorithm Confusion: Key Lessons for Code Review (pentesterlab.com)
3 points by pentestercrab on Nov 25, 2024 | past
21.Chosen-Prefix Collisions on AES-Like Hashing (iacr.org)
2 points by pentestercrab on Nov 25, 2024 | past
22.Ruby 3.4 Universal RCE Deserialization Gadget Chain (nastystereo.com)
2 points by pentestercrab on Nov 25, 2024 | past | 1 comment
23.Ruby's String Slice is Broken (nastystereo.com)
3 points by pentestercrab on Nov 4, 2024 | past | 2 comments
24.Evaluate Markdown code blocks within Vim (github.com/gpanders)
68 points by pentestercrab on Oct 26, 2024 | past | 18 comments
25.SQL Injection Polyglot Payloads (nastystereo.com)
1 point by pentestercrab on Oct 22, 2024 | past
26.Insecurity Through Censorship: Vulnerabilities Caused by the Great Firewall (assetnote.io)
2 points by pentestercrab on Oct 1, 2024 | past | 1 comment
27.Insecurity Through Censorship: Vulnerabilities Caused by the Great Firewall (assetnote.io)
4 points by pentestercrab on Sept 27, 2024 | past
28.Fuzz Map – fuzzer for GUIs that automatically builds a visual map (fuzzmap.io)
1 point by pentestercrab on June 27, 2024 | past
29.nastystereo.com (nastystereo.com)
1 point by pentestercrab on June 27, 2024 | past
30.A Single File Ruby on Rails Application (molnar.io)
3 points by pentestercrab on May 27, 2024 | past | 4 comments

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: