- A fun RCE and Privesc in Cambridge University
- Hacking into NASA - Reading sensitive files via Path Traversal
- Google Dorking for an XSS in NASA
- A simple Blind XXE in Proofpoint
- Subdomain Brute Forcing Leads to Admin Access in the Navy
- My Web Application Toolkit
- A CSRF in Nokia with a Referer Bypass
- Advanced Asset Discovery