// Bug Bounty
Vulnerability Research
When I have time to hunt bugs.
Bugcrowd
1 P1 finding on YNAB. Hall of Fame #14.
- Blind time-based SQLi & blind stored XSS YNAB P1 Write-up →
HackerOne
1 report to GitLab (SSRF, duplicate).
- Blind SSRF through repository import GitLab Medium (duplicate)
// Wargames
Always-On Platforms
Permanent CTF platforms I practice on.
// Events
CTF Competitions
Online CTF events I've participated in.
Yogosha Entry Test
July 2020
Finished 31 of 155 players (top 20%).
// Challenges
Standalone Challenges
Individual security challenges and write-ups.
Intigriti Easter XSS
Easter-themed XSS challenge from Intigriti.