Skip to content

Jaymark Pestaño

Travel | InfoSec | Technology | Tips & Tricks

  • Blog Home
  • Main Site
  • Contact
    • Facebook
    • Twitter
    • Instagram
    • Github
  • Facebook
  • Twitter
  • Instagram
  • Github
search
  • Facebook
  • Twitter
  • Instagram
  • Github
search
How I managed to get XSS from NVidia desktop app to Web
Jan29January 29, 2020InfoSec, Tips & Tricks, Writeups

How I managed to get XSS from NVidia desktop app to Web

Introduction I was busy playing my favorite game when a notification update from NVidia pops up. But before I get to update the software, it…

XSS Trick: Semi-colon and Forward slash not allowed?
Jan22January 22, 2020InfoSec, Tips & Tricks, Writeups

XSS Trick: Semi-colon and Forward slash not allowed?

On the screenshot below, you can see that we can fully inject our payload without breaking a sweat. But you may notice that our // isn’t reflected…

XSS Filter Evasion: Encoding to the rescue!
Jan20January 20, 2020InfoSec, Tips & Tricks, Writeups

XSS Filter Evasion: Encoding to the rescue!

WHAT IS ENCODING? It is the process of converting data from one form to another form using a scheme that is publicly available so that it can easily be…

SQLMap: SQLinjection WAF Bypass
Jan19January 20, 2020InfoSec, Tips & Tricks, Tools, Writeups

SQLMap: SQLinjection WAF Bypass

What is a WAF? Web Application Firewall a.k.a WAF, acts as a “security guard” which takes care of what’s going in and out of a…

Theme: Reblog by Moral Themes.
  • Facebook
  • Twitter
  • Instagram
  • Github