corpus.blog
Most cited
Talked about
Blogs
41554 blogs · [ { "id": "01a0875a-1f95-7107-ba9b-0f015da93605", "title": "Why Cloudflare rule order matters?", "url": "https://www.brzozowski.io/web-applications/2026/03/11/why-cloudflare-rule-order-matters.html", "published_at": "2026-03-11T10:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f015df4e097", "title": "One year with bug bounty automation", "url": "https://www.brzozowski.io/bug-bounty/2026/02/16/one-year-with-bug-bounty-automation.html", "published_at": "2026-02-16T10:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f015ea92a40", "title": "LG WebOS ‘Pwnage’ – getting unauthenticated code execution on enterprise Signage TVs", "url": "https://www.brzozowski.io/web-applications/2024/04/09/lg-webos-pwnage-getting-rce-on-signage-tvs.html", "published_at": "2024-04-09T03:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f015f2e219f", "title": "Cisco Smart Software Manager on-prem SQL Injection", "url": "https://www.brzozowski.io/web-applications/2023/07/16/cisco-ssm-sql-injection.html", "published_at": "2023-07-16T03:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f015fb2613c", "title": "Yeswehack's Dojo #17 XSS challenge writeup", "url": "https://www.brzozowski.io/web-applications/2022/06/06/yeswehack-dojo-17-challenge-writeup.html", "published_at": "2022-06-06T11:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f01608a9eb3", "title": "Intigriti's April XSS challenge writeup", "url": "https://www.brzozowski.io/web-applications/2022/04/24/intigritis-april-xss-challenge-writeup.html", "published_at": "2022-04-24T11:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f0160d0fcb9", "title": "Hacking into NAS", "url": "https://www.brzozowski.io/web-applications/2021/06/21/hacking-into-nas.html", "published_at": "2021-06-21T10:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f0161ce53ba", "title": "The (in)secure story of OctoPrint", "url": "https://www.brzozowski.io/web-applications/2021/05/11/the-insecure-story-of-octoprint.html", "published_at": "2021-05-11T08:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f01623c1adb", "title": "Actually useful XSS trick", "url": "https://www.brzozowski.io/web-applications/2021/04/20/actually-useful-xss-trick.html", "published_at": "2021-04-20T14:00:00+00:00" }, { "id": "01a0875a-1f95-7107-ba9b-0f0163118dc4", "title": "Email exfiltration via native Outlook API", "url": "https://www.brzozowski.io/post-exploitation/2021/03/17/email-exfiltration-via-native-outlook-api.html", "published_at": "2021-03-17T10:00:00+00:00" } ] posts
Claim your blog
Back to Jakub Brzozowski
Blog · corpus.blog/blogs/brzozowski.io/posts
Jakub Brzozowski
brzozowski.io
2026
Why Cloudflare rule order matters?
original ↗
11 Mar 2026
One year with bug bounty automation
original ↗
16 Feb 2026
2024
LG WebOS ‘Pwnage’ – getting unauthenticated code execution on enterprise Signage TVs
original ↗
9 Apr 2024
2023
Cisco Smart Software Manager on-prem SQL Injection
original ↗
16 Jul 2023
2022
Yeswehack's Dojo #17 XSS challenge writeup
original ↗
6 Jun 2022
Intigriti's April XSS challenge writeup
original ↗
24 Apr 2022
2021
Hacking into NAS
original ↗
21 Jun 2021
The (in)secure story of OctoPrint
original ↗
11 May 2021
Actually useful XSS trick
original ↗
20 Apr 2021
Email exfiltration via native Outlook API
original ↗
17 Mar 2021