Hacking a Chrome Extension for Fun and Profit

Hacking a Chrome Extension for Fun and Profit

One-click SSL-Pinning Bypass Setup

One-click SSL-Pinning Bypass Setup

Leveraging XSS to Read Internal Files

Leveraging XSS to Read Internal Files

From Android Static Analysis to RCE on Production

From Android Static Analysis to RCE on Production

Bypassing Google Maps API Key Restrictions

Bypassing Google Maps API Key Restrictions

Exploiting JWT - Lack of Signature Verification

Exploiting JWT - Lack of Signature Verification

Android Pentesting CheatSheet

Android Pentesting CheatSheet

Exploiting Docker Registry

Exploiting Docker Registry