Pizza Hut DevOps Hate Me. Yet Love Me? - A Bug Bounty Story
Pre-Auth Takeover of Build Pipelines in GoCD.
Mar 15, 20223 min read713

Search for a command to run...

Series
This is a series of my personal security research, hunting for 0days, and other vulnerabilities focused on web applications.
Pre-Auth Takeover of Build Pipelines in GoCD.

This is my journey on hunting and finding my first 0day as a security researcher. CVE-2023-31045.

A bug bounty story by GRuMPz.

Inspiring new bug bounty hunters with a simple RCE vulnerability discovery.

How I Found Several Stored XSS Bugs in Rocket LMS Version 1.9 in Under 10 Minutes

How I Quickly Found a Stored XSS 0day in the QDOCS Smart School 7.0.0
