> offensive security · research · writeups
pok3
Offensive security notes: CTF writeups, CVE disclosures and vulnerability research.
$ whoami
pok3 - Penetration Tester, CTF player, professional breaker of things
$ cat ./focus.txt
web exploitation · reverse engineering · hardware hacking · ot security · android app testing
$ ls ./writeups | wc -l
1
$
$ ls ~/
$ ls -lt ~/writeups | head
-
Parsing YAML is a minefield
An analysis of YAML parser behavior, specification compliance, and security issues, including denial-of-service risks and parser inconsistencies.