writeups.xyz writeups.xyz / Mateusz Olejarka (@Molejarka)

Title Vulnerabilities Programs Authors
A perfect duplicate or how to send an email with a spoofed invoice’s content
Finding hidden gems vol. 4: Rakefile a.k.a. how to get AWS keys again
Finding hidden gems vol. 3: quick win with .sh file
Finding hidden gems vol. 2: REAMDE.md, the story of a bit too helpful readme file
Finding hidden gems vol. 1: forging OAuth tokens using discovered client id and client secret