P€nt€stM@nk€y's Avatar

P€nt€stM@nk€y

@pentestmonkey11.bsky.social

711 Followers  |  151 Following  |  5 Posts  |  Joined: 21.11.2024  |  1.4509

Latest posts by pentestmonkey11.bsky.social on Bluesky

Preview
Local File Inclusion (LFI) Due to Untrusted User Input From analysing a WordPress plugin and exploiting it to get the flag.

Local File Inclusion (LFI) vulnerability due to unvalidated user input. This analysis is based on a Patchstack CTF exercise concerning a WordPress instance.

medium.com/@kr.sulabhja...

#ctf #cybersecutity #wordpress

27.05.2025 14:00 — 👍 0    🔁 0    💬 0    📌 0
Preview
Chaining Unauthorized User Registration, Broken Access Control, and Insecure CSRF Token Exposure to… From analysing a WordPress plugin and exploiting it to get the flag.

Let's explore the chaining of Unauthorized User Registration, Broken Access Control, and Insecure CSRF Token Exposure vulnerabilities within WordPress, leveraging the Semgrep tool for vulnerability discovery.

Here is my write-up on the same:
medium.com/@kr.sulabhja...

#cybersecurity #wordpress

26.05.2025 10:50 — 👍 0    🔁 0    💬 0    📌 0
Preview
Patchstack Alliance CTF S02E02 — Road to WordCamp Europe From analysing a WordPress plugin and exploiting it to get the flag.

Here is my writeup on how a classic JWT confusion vulnerability lead to vertical privilege escalation. This is caused due to improper token handling ....

medium.com/@kr.sulabhja...

#CTF #WordPressSecurity #SAST #JWT #Infosec #PrivilegeEscalation #AppSec #cybersecurity

21.05.2025 07:28 — 👍 1    🔁 0    💬 0    📌 0
Preview
Patchstack Alliance CTF S02E02 — Road to WordCamp Europe From analyzing a WordPress plugin and exploiting it to get the flag

Here is my first CTF write-up on wordpress pentesting.

medium.com/@kr.sulabhja...

#cybersecurity #pentesting #SAST #wordpress

19.05.2025 15:07 — 👍 0    🔁 0    💬 0    📌 0
Post image

🚨 Security Alert: P1 Vulnerability Identified 🚨

Discovered a critical (P1) vulnerability in a DS Group asset. Kudos to their security team for the swift response!​

#CyberSecurity #Infosec #Hacking #EthicalHacking #BugBounty #InformationSecurity #Security #Tech

25.04.2025 18:35 — 👍 0    🔁 0    💬 0    📌 0

@pentestmonkey11 is following 20 prominent accounts