celesian (@c3l3si4n) 's Twitter Profile
celesian

@c3l3si4n

ID: 1136095212479090694

linkhttp://celes.in calendar_today05-06-2019 02:19:41

2,2K Tweet

2,2K Followers

402 Following

celesian (@c3l3si4n) 's Twitter Profile Photo

Want to host your own subdomain database? Have you ever wanted to scrape all domains from TLS certificates directly from the source? Now it's as simple as ./crtdumper -o output.txt. Check crtdumper out at github.com/c3l3si4n/crtdu…

Sonar Research (@sonar_research) 's Twitter Profile Photo

🔥 XSS on any website with missing charset information? 😳 Attackers may leverage the ISO-2022-JP character encoding to inject arbitrary JavaScript code into a website. Read more in our latest blog post: sonarsource.com/blog/encoding-… #appsec #security #vulnerability

🔥 XSS on any website with missing charset information? 😳

Attackers may leverage the ISO-2022-JP character encoding to inject arbitrary JavaScript code into a website. Read more in our latest blog post:

sonarsource.com/blog/encoding-…

#appsec #security #vulnerability
Patrick Wardle (@patrickwardle) 's Twitter Profile Photo

No surprises here, but CrowdStrike confirms Tavis Ormandy's analysis, that the bug was indeed not due to a NULL-pointer deference 🧠 ...but rather "an out-of-bounds memory read"

No surprises here, but <a href="/CrowdStrike/">CrowdStrike</a> confirms <a href="/taviso/">Tavis Ormandy</a>'s analysis, that the bug was indeed not due to a NULL-pointer deference 🧠 ...but rather "an out-of-bounds memory read"
Matheus. (@adinazolam) 's Twitter Profile Photo

CNEXT + CosmicSting (Magento XXE) exploit chain github.com/nospher3x2/cne… by ryan, @luk4c5 and NULL #bugbountytips #CosmicSting #CNEXT #projectdiscovery

Rafael (@beescoitu) 's Twitter Profile Photo

If you have been using Github for some time, there is a slight chance you might be leaking more than what you would like to through your contact information attached to your public commits (full name? personal/work email address?) I've created a simple "OSINT" tool that allows

If you have been using Github for some time, there is a slight chance you might be leaking more than what you would like to through your contact information attached to your public commits (full name? personal/work email address?)

I've created a simple "OSINT" tool that allows
RyotaK (@ryotkak) 's Twitter Profile Photo

I recently developed and posted about a technique called "First sequence sync", expanding James Kettle's single packet attack. This technique allowed me to send 10,000 requests in 166ms, which breaks the packet size limitation of the single packet attack. flatt.tech/research/posts…

celesian (@c3l3si4n) 's Twitter Profile Photo

I solved CWErdle for 2024-09-05! 🎉 CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Hints used: 2/10 Score: 3650 Can you beat my score? Play at lude.rs/CWErdle/