Published onJanuary 6, 2025Web Challenge IRIS CTF 2025 - Politicalctfweb-securitychallengeinjectionurl-encodingpuppeteerA detailed walkthrough of the Political web challenge from IRIS CTF 2025, covering token validation, admin cookie exploitation, and URL encoding techniques.
Published onDecember 10, 2024Understanding window postMessage and Its XSS Riskswindow-postmessagexssjavascriptsecurityweb-securityAn in-depth look at the risks of using window postMessage and how improper use can lead to XSS vulnerabilities.