

Escalated from one vulnerability to four, allowing user record injection, insertion of malicious links on a portal, direct read/download access to internal files, internal workflow queues, access to JWT & pre-generated CSRF. Blog coming soon
John Monero
24 posts

@3907_bh
hacker and sometimes researcher


Escalated from one vulnerability to four, allowing user record injection, insertion of malicious links on a portal, direct read/download access to internal files, internal workflow queues, access to JWT & pre-generated CSRF. Blog coming soon




Escalated from one vulnerability to four, allowing user record injection, insertion of malicious links on a portal, direct read/download access to internal files, internal workflow queues, access to JWT & pre-generated CSRF. Blog coming soon






The WordPress RCE PoC was built by Claude in 10 minutes. A human would have taken a whole day, maybe days. This is where Claude is now.


Kimi K3 looks insanely good. But would you trust a Chinese AI model with your data?









