Manuel Caballero

232 posts

Manuel Caballero banner
Manuel Caballero

Manuel Caballero

@magicmac2000

Independent Security Researcher. Perpetual Student of Life :)

Buenos Aires, Argentina Katılım Mart 2009
76 Takip Edilen3.9K Takipçiler
Paul Sant · Telecodex
Paul Sant · Telecodex@YouPulseX·
@magicmac2000 What log becomes the receipt when CSP is bypassed, DevTools is blind, and the real User-Agent still leaves?
English
1
0
0
104
Manuel Caballero
Manuel Caballero@magicmac2000·
@soutagx86 @siunam321 But based on what I'm posting, it seems as if I read your research and took it as mine!! 🤣🤣🤣🤣 BTW, this thing is really useful to me, not because of the CSP but the fact that we can pass data bypassing what automated frameworks (bots) can easily see.
English
1
0
1
33
Manuel Caballero
Manuel Caballero@magicmac2000·
@host_down At 52 I'm still figuring it out, so you might want to pick a faster role model 😄
English
1
0
1
101
Manuel Caballero
Manuel Caballero@magicmac2000·
@insertScript Hey Alex!!!! 😁 Same here! I had to double check it was me posting. Took me so long that by now someone else probably found the bug, reported it, got the bounty, AND spent it. But here I am, fashionably late to my own comeback. 😅
English
0
0
1
187
alex
alex@insertScript·
@magicmac2000 I had to double check that this is actually a new post from you. Nice to see back giving browsers a hard time :-D
English
1
0
1
256
Manuel Caballero
Manuel Caballero@magicmac2000·
@soutagx86 @siunam321 Wow!! Congrats, soutag and thanks siunam for the pointer! It seems I stumbled upon the same but a few years after haha =) Please, send me the link to the tweet to I can add proper credits to the blogpost! 😀
English
1
0
2
57
Manuel Caballero
Manuel Caballero@magicmac2000·
@rebane2001 Thanks Rebane! ☺️ My publishing schedule is basically: one kid has a girlfriend (RIP my existence), the other ignores me on weekends. Half a Saturday is all I need. 🤣
English
0
0
9
525
Rebane
Rebane@rebane2001·
@magicmac2000 this is cool!! your past work is awesome, glad to see you back!
English
1
0
14
815
Manuel Caballero
Manuel Caballero@magicmac2000·
@whithat444 For Chrome/FF/Safari, nope. If you want to get examples of this on IE/Edge, you can check in the UXSS area where you will find many variations and several using javascript: and data: brokenbrowser.com/browser-worksh… What are you trying to achieve, exactly?
English
1
0
2
328
Manuel Caballero
Manuel Caballero@magicmac2000·
@chlclient Striking similarities! =) It seems as if I've copied from that blog, but I haven't seen it. I've tested the prerender as described in the blog-post but it didn't work. So, apparently the snippet that you are sending has been patched, but they forgot to do it on prerender 🤣
English
0
0
0
32
Manuel Caballero
Manuel Caballero@magicmac2000·
@t0xodile Thanks, Thomas =) It's a bit of pure luck, really. I was trying to find a stealth extension detector and stumble upon this beauty in the middle of the research 🤣
English
1
0
2
301
Manuel Caballero
Manuel Caballero@magicmac2000·
@garethheyes Thanks, Garetho! You know you and Dave were big inspirations for me. Thanks for always being so generous with your knowledge and helpful with me! ☺️
English
1
0
2
673
Manuel Caballero
Manuel Caballero@magicmac2000·
@PaulosYibelo Thank you, Paulos! 😄 After years of being the most important person in my kids' lives, I have now been officially downgraded to "that guy who still lives here." On the bright side, all that free time had to go somewhere. So here I am! 😄🤣
English
1
0
13
1.4K
Richard Johnson
Richard Johnson@richinseattle·
Spread the word! @phrack CFP with demoscene cracktro is live. Turn up the volume and enjoy the awesome stylings of @PiotrBania with some hopefully inspiring text from phrack staff :) phrack.org
Richard Johnson tweet media
English
6
134
253
40.8K
Manuel Caballero
Manuel Caballero@magicmac2000·
@herrcore The work that you do is wonderful. Simply awesome. If I had to start all over again, my first step would be to begin with your tutorials. Congrats and my best wishes with the patreon!
English
1
0
1
145
herrcore
herrcore@herrcore·
🥂For 2026 we have added 30 new collections to our OALABS Patreon Now it's easy to browse by topic and quickly find multi-part RE series that were previously hidden! More to come soon... patreon.com/cw/oalabs/coll…
English
1
8
47
5.1K
Manuel Caballero
Manuel Caballero@magicmac2000·
@thechartist Hey Nick! Thanks for your books and thoughts. I learned a lot from you. Now I need to put these things in action 😆😆😆. QQ: when you say that MaxDD is -5.1%, are you measuring every day or end of month? If end of month, do you have a measurement of MaxDD intraday? Thanks!
English
1
0
2
184
The Chartist
The Chartist@thechartist·
Real-time equity of the All Weather strategy. Tracking sideways at present - nothing out of the ordinary. Holding a 29% cash position at present. Current drawdown -2.8%. MaxDD since inception -5.1% Current CAGR since release tracking at 20.4%
The Chartist tweet media
English
4
2
59
4.4K
Manuel Caballero
Manuel Caballero@magicmac2000·
@priceactionlab @hughesanalytics Michael, fantastic book all around. I got several gems from it and for sure I was fooling myself =) Why do you consider a filter (SMA200) invalid? Don't you think that using them to determine if an action is taken, is valid despite the fact that the number is arbitrary? Thanks!
English
1
1
1
206
Price Action Lab
Price Action Lab@priceactionlab·
@hughesanalytics The math is simple to prove this is not the case. Finding a consistent loser is as hard as finding a consistent winner. I show this in my book Fooled by Technical Analysis. eBook soon available in multiple bookstores.
Price Action Lab tweet media
English
2
0
2
117