The Cost of Exposing your Kubecost
Intro : During a recent engagement of reviewing a Kubernetes environment I came across a service called “Kubecost”, which is intended to be used for monitori...
Intro : During a recent engagement of reviewing a Kubernetes environment I came across a service called “Kubecost”, which is intended to be used for monitori...
CVE-2024-26367
Intro Multiple articles and blog posts written about Kubeflow intrigued me to dive (albeit shallow) into and scour the depths of Shodan one evening to see wh...
CVE-2023-39854
The following describes the set up and usage of a Burp Suite Extension I wrote, that creates a new Collaborator URL and dumps the raw Interaction transaction...
CVE-2023-38523
During a recent Pentesting engagement, I came across a service using FoundationDB to store application layer configurations and state. This lead me to dive i...
The following is a compilation of queries to list database user hashes, which are stored locally in tables. The hashes obtained can be cracked using password...