Welcome

This is my simple Blog. My personal experience in cyber security, or more likely, penetration testing and CTF. The best study is explaining it to others. Pls visit & subscribe on YouTube: https://short.7sec.pw/YT

Latest posts

Fuzzing Art with Wfuzz - Basic

Fuzzing Art with Wfuzz - Basic

Wfuzz is a tool designed for bruteforcing Web Applications, it can be used for finding resources not linked (directories, servlets, scripts, etc), bruteforce GET and POST parameters for checking different kind of injections (SQL, XSS, LDAP,etc), bruteforce Forms parameters (User/Password), Fuzzing,etc.

THM - Wordpress: CVE-2021-29447

THM - Wordpress: CVE-2021-29447

Wordpress: CVE-2021-29447 Vulnerability allow a authenticated user whith low privilages upload a malicious WAV file that could lead to remote arbitrary file disclosure and server-side request forgery (SSRF).