ClassLink OneClick Extension Part 2: Electric Boogaloo (CVE-2023-45889)

Finding a vulnerability in the patch to a vulnerability which I also discovered.

Read more  ↩︎

BuckeyeCTF 2023 web/area51 Writeup

This is how I solved the web/area51 challenge of BuckeyeCTF 2023.

Read more  ↩︎

How I Found A Vulnerability in The ClassLink OneClick Extension (CVE-2022-48612)

This is the story of how I found a universal cross-site scripting vector in a browser extension used by over 10 million users.

Read more  ↩︎