December 15 2023
Salesforce Lightning exploitation through direct APEX execution
How direct APEX execution can lead to SSRF, data enumeration, XSS, phishing and more.
November 25 2023
The nodev mount option
Brief summary about mount security principles, Linux file types and risk about this specific option.
October 21 2023
Salesforce Lightning debug mode
Bug bounty tip: enable debug mode for current user
October 12 2023
The carriage return (CR) case
I encountered a strange behaviour by testing text input processing functions, where I thought I found a vulnerability. Some feedback and history about characters management.
September 11 2023
Welcome
A new beginning.