Swissky
@swissky.bsky.social
📤 699
📥 267
📝 8
RedTeam | Pentest Author of PayloadsAllTheThings & SSRFmap
http://github.com/swisskyrepo
pinned post!
🚀 Big Announcement! 🚀 After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨ To celebrate, I’m gifting 2 free copies to random reposters! 🔥 👉 Repost for a chance to win Thank you all for your incredible support! 🙌
#CyberSecurity
#Infosec
loading . . .
Payloads All The Things
https://leanpub.com/payloadsallthethings
11 months ago
2
14
11
Writeup of "Payload Plz" challenge - Le Hack 2025 The goal was to write a polyglot payload for 13 contexts 🤯
swisskyrepo.github.io/blog/payload...
loading . . .
LeHack 2025 - PayloadPLZ
Last weekend, I took part in the LeHack 2025 event in Paris. As always, the challenges hosted by YesWeHack were top-notch and full of valuable learning opportunities. This year's highlight was craftin...
https://swisskyrepo.github.io/blog/payload-plz/
4 months ago
0
2
0
reposted by
Swissky
Taggart
7 months ago
I migrated my coding life, including my static websites, off GitHub. It's easier than you might think! Here's how I did it.
taggart-tech.com/mig...
loading . . .
How and Why to Ditch GitHub
How much of your code do you feel like entrusting to Microsoft? How about American data centers? Here's an easy way to jump ship and maintain operations.
https://taggart-tech.com/migrate-to-codeberg/
1
9
7
reposted by
Swissky
Robin
9 months ago
A great write up on McDonald's API security by Eaton:
eaton-works.com/2024/12/19/m...
If you want to learn some API hacking techniques, I've just pushed a new API module to DVWA:
github.com/digininja/DVWA
loading . . .
I’m Lovin’ It: Exploiting McDonald’s APIs to hijack deliveries and order food for a penny
A series of API flaws in McDelivery India made it possible to order food for a penny, hijack other people’s delivery orders, view user information, and more.
https://eaton-works.com/2024/12/19/mcdelivery-india-hack/
1
12
4
reposted by
Swissky
Laluka
9 months ago
Yop ! 🌿 Reprise des veilles technos ce soir 21h ! 🌖 En compagnie de
@drypaint.bsky.social
@maltemo.bsky.social
@swissky.bsky.social
😎 ~ See you there ~
www.twitch.tv/thelaluka
loading . . .
Twitch
Twitch is the world
https://www.twitch.tv/thelaluka
0
2
3
The results are in! Congratulations to the winners—you’ll receive your prize via DM. Thank you all for participating! 😊
add a skeleton here at some point
10 months ago
0
1
0
reposted by
Swissky
Thomas Seigneuret
10 months ago
New module on
#NetExec
: wam Dump
#Entra
access tokens from Windows Token Broker Cache, and make your way to Entra 🚀 Thanks
@xpnsec.com
for the technique! More info on his blog :
blog.xpnsec.com/wam-bam/
0
21
12
reposted by
Swissky
🚀 Big Announcement! 🚀 After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨ To celebrate, I’m gifting 2 free copies to random reposters! 🔥 👉 Repost for a chance to win Thank you all for your incredible support! 🙌
#CyberSecurity
#Infosec
loading . . .
Payloads All The Things
https://leanpub.com/payloadsallthethings
11 months ago
2
14
11
reposted by
Swissky
Leanpub
11 months ago
Payloads All The Things: Web Application Security Cheatsheets
leanpub.com/payloadsallt...
by Swissky is the featured book on the Leanpub homepage!
leanpub.com
#ComputerProgramming
#ComputerSecurity
loading . . .
Payloads All The Things
https://leanpub.com/payloadsallthethings
0
0
1
🚀 Big Announcement! 🚀 After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨ To celebrate, I’m gifting 2 free copies to random reposters! 🔥 👉 Repost for a chance to win Thank you all for your incredible support! 🙌
#CyberSecurity
#Infosec
loading . . .
Payloads All The Things
https://leanpub.com/payloadsallthethings
11 months ago
2
14
11
NTLM Relaying – Making the Old New Again
labs.jumpsec.com/ntlm-relayin...
loading . . .
NTLM Relaying - Making the Old New Again | JUMPSEC LABS
I am old enough to remember that it was not always possible to get domain admin within the first hour of a test via Active Directory Certificate Services (ADCS) misconfigurations or over permissioned ...
https://labs.jumpsec.com/ntlm-relaying-making-the-old-new-again/
11 months ago
0
8
1
reposted by
Swissky
captnbanana
11 months ago
still the best bug: GraphQL discloses internal beer consumption (
hackerone.com/reports/419883
)
0
6
1
reposted by
Swissky
Nicolas Grégoire
12 months ago
I run
@agarri.fr
(this main account) and
@mastering-burp.agarri.fr
(dedicated to
@burpsuite.bsky.social
tips) And I like how custom handles bring your "brand" (aka domain name) front and center while helping to combat impersonation
add a skeleton here at some point
1
0
1
🌧️ On a rainy day, I dove into Pokémon Yellow glitches. Ever wondered how they work under the hood? As kids, we were already hackers manipulating bits in memory! 🔍👾 Read more in my latest blog post:
swisskyrepo.github.io/Pokemon-Glit...
loading . . .
Anatomy of Pokemon glitches
Digging into the anatomy of Pokemon Yellow glitches, or how to impress your school friends during break time.
https://swisskyrepo.github.io/Pokemon-Glitches/
12 months ago
0
2
1
It’s never too late to solve an old challenge. I spent some time this week-end to try my luck on a hardware challenge from the Ph0wn CTF 2019. Here is my writeup,
swisskyrepo.github.io/Ph0wn-Flag-D...
loading . . .
Ph0wn CTF 2019 - Flag Digger
Ph0wn CTF 2019 - Flag Digger TLDR: It’s never too late to try to solve an old challenge. This blog post is a quick writeup of a challenge from the Ph0wn CTF 2019 where you were given a small chip a...
https://swisskyrepo.github.io/Ph0wn-Flag-Digger/
over 1 year ago
0
2
1
DLS 2024 - RedTeam Fails - "Oops my bad I ruined the operation", a story on how to fail a red team assessment 🦖
swisskyrepo.github.io/Drink-Love-S...
loading . . .
DLS 2024 - RedTeam Fails -
Red Team Fails - “Oops my bad I ruined the operation”, a story on how to fail a red team assessment. TLDR: Recently I had the pleasure to give a rump during the “Drink Love Share” meet organi...
https://swisskyrepo.github.io/Drink-Love-Share-Rump/
almost 2 years ago
0
8
0
you reached the end!!
feeds!
log in