corpus.blog
Most cited
Talked about
Blogs
41554 blogs · [ { "id": "01a08775-f079-73c0-9bd9-15350c065586", "title": "Bypassing Socket Firewall using .sfw.config", "url": "https://evilpacket.net/blog/socket-firewall-config-bypass/", "published_at": "2025-10-14T23:26:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350c14112f", "title": "Executing Malicious MCP Servers in Cursor Using Hidden Args", "url": "https://evilpacket.net/blog/executing-malicious-mcp-servers-in-cursor-using-hidden-args/", "published_at": "2025-07-20T23:40:36+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350c45c485", "title": "Historical EvilPacket Videos", "url": "https://evilpacket.net/videos/", "published_at": "2024-11-23T05:00:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350cad26cf", "title": "Attacking OSS Using Abandoned Resources", "url": "https://evilpacket.net/blog/attacking-oss-using-abandoned-resources/", "published_at": "2021-01-29T01:35:34+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350d233ac6", "title": "Headless Holiday Hack: Flag 1", "url": "https://evilpacket.net/blog/headless-holiday-hack-part-1/", "published_at": "2020-11-27T16:04:37+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350ddd2853", "title": "My Favorite Vulnerability: From ERROR to inter-protocol exploitation", "url": "https://evilpacket.net/blog/my-favorite-vuln/", "published_at": "2020-02-09T18:00:13+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350e1f2a12", "title": "Identify an O.MG Cable", "url": "https://evilpacket.net/blog/identify-an-omg-cable/", "published_at": "2020-01-07T01:34:01+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350ea8c43f", "title": "Using Chrome Debugger Metasploit Gather Module", "url": "https://evilpacket.net/blog/using-chrome-debugger-msf-gather-module/", "published_at": "2019-12-19T17:19:25+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350eeeec93", "title": "Brilliant Hire Exposure No Bounty", "url": "https://evilpacket.net/blog/brilliant-hire-exposure-no-bounty/", "published_at": "2019-11-01T16:16:51+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15350f7f0b28", "title": "Leveraging Javascript Debuggers for compromise", "url": "https://evilpacket.net/blog/leveraging-javascript-debuggers/", "published_at": "2019-09-10T23:27:22+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15351022b774", "title": "CTF", "url": "https://evilpacket.net/ctf/", "published_at": "2019-09-08T04:00:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-153510ffc109", "title": "CVE / Vulnerabilities / Advisories", "url": "https://evilpacket.net/vulns/", "published_at": "2019-09-08T04:00:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-153511a63388", "title": "Presentations and Podcasts", "url": "https://evilpacket.net/presentations/", "published_at": "2019-09-08T04:00:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-153511a80eee", "title": "Enumerating Files Using Server Side Request Forgery and the request Module", "url": "https://evilpacket.net/blog/enumerating-files-using-server-side-request-forgery-and-the-request-module/", "published_at": "2017-12-15T17:02:16+00:00" }, { "id": "01a08775-f079-73c0-9bd9-1535124d86b6", "title": "npm Registry Spelunking: Dependencies Referenced by URL", "url": "https://evilpacket.net/blog/npm-registry-spelunking-dependencies-referenced-by-url/", "published_at": "2017-11-08T22:40:22+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15351314380e", "title": "Bypassing npm / yarn ignore Scripts with Command Injection", "url": "https://evilpacket.net/blog/bypassing-npm-ignore-scripts-with-command-injection-in-package-json/", "published_at": "2017-08-11T00:11:17+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15351328e7d2", "title": "My story about mentorship and my career", "url": "https://evilpacket.net/blog/my-story-about-mentorship/", "published_at": "2017-06-21T01:41:00+00:00" }, { "id": "01a08775-f079-73c0-9bd9-15351414ea00", "title": "In Memory Backdoor for Node.js Express Apps", "url": "https://evilpacket.net/blog/in-memory-backdoor-for-node-js-express-apps/", "published_at": "2017-03-03T01:15:51+00:00" }, { "id": "01a08775-f079-73c0-9bd9-153514529d78", "title": "Compromising Node.js apps using Machine-in-the-Middle", "url": "https://evilpacket.net/blog/compromising-node-js-apps-using-machine-in-the-middle/", "published_at": "2017-01-12T00:31:08+00:00" }, { "id": "01a08775-f079-73c0-9bd9-153514a6bbb5", "title": "Pillaging Distributed Version Control 5 Years Later", "url": "https://evilpacket.net/blog/pillaging-distributed-version-control-5-years-later/", "published_at": "2016-11-13T17:38:59+00:00" }, { "id": "01a08775-f07a-736c-bd66-070e4020faf8", "title": "What Are the Bots Up to on npm?", "url": "https://evilpacket.net/blog/what-are-the-bots-up-to-on-npm/", "published_at": "2016-11-08T22:59:14+00:00" }, { "id": "01a08775-f07a-736c-bd66-070e40598c02", "title": "Atom.io Misconfiguration Allowed Code Execution on Untrusted Networks", "url": "https://evilpacket.net/blog/atom-io-misconfiguration-allowed-code-execution-on-untrusted-networks/", "published_at": "2016-10-30T16:16:51+00:00" }, { "id": "01a08775-f07a-736c-bd66-070e414bb761", "title": "Regular Expression Denial of Service Affecting Express.js", "url": "https://evilpacket.net/blog/regular-expression-denial-of-service-affecting-express-js/", "published_at": "2016-04-29T22:59:41+00:00" }, { "id": "01a08775-f07a-736c-bd66-070e415ba2ad", "title": "Elements", "url": "https://evilpacket.net/elements/", "published_at": null }, { "id": "01a08775-f07a-736c-bd66-070e422c0ab5", "title": "Privacy", "url": "https://evilpacket.net/privacy/", "published_at": null } ] posts
Claim your blog
Back to evilpacket.net
Blog · corpus.blog/blogs/evilpacket.net/posts
evilpacket.net
evilpacket.net
2025
Bypassing Socket Firewall using .sfw.config
original ↗
14 Oct 2025
Executing Malicious MCP Servers in Cursor Using Hidden Args
original ↗
20 Jul 2025
2024
Historical EvilPacket Videos
original ↗
23 Nov 2024
2021
Attacking OSS Using Abandoned Resources
original ↗
29 Jan 2021
2020
Headless Holiday Hack: Flag 1
original ↗
27 Nov 2020
My Favorite Vulnerability: From ERROR to inter-protocol exploitation
original ↗
9 Feb 2020
Identify an O.MG Cable
original ↗
7 Jan 2020
2019
Using Chrome Debugger Metasploit Gather Module
original ↗
19 Dec 2019
Brilliant Hire Exposure No Bounty
original ↗
1 Nov 2019
Leveraging Javascript Debuggers for compromise
original ↗
10 Sept 2019
CTF
original ↗
8 Sept 2019
CVE / Vulnerabilities / Advisories
original ↗
8 Sept 2019
Presentations and Podcasts
original ↗
8 Sept 2019
2017
Enumerating Files Using Server Side Request Forgery and the request Module
original ↗
15 Dec 2017
npm Registry Spelunking: Dependencies Referenced by URL
original ↗
8 Nov 2017
Bypassing npm / yarn ignore Scripts with Command Injection
original ↗
11 Aug 2017
My story about mentorship and my career
original ↗
21 Jun 2017
In Memory Backdoor for Node.js Express Apps
original ↗
3 Mar 2017
Compromising Node.js apps using Machine-in-the-Middle
original ↗
12 Jan 2017
2016
Pillaging Distributed Version Control 5 Years Later
original ↗
13 Nov 2016
What Are the Bots Up to on npm?
original ↗
8 Nov 2016
Atom.io Misconfiguration Allowed Code Execution on Untrusted Networks
original ↗
30 Oct 2016
Regular Expression Denial of Service Affecting Express.js
original ↗
29 Apr 2016
Undated
Elements
original ↗
—
Privacy
original ↗
—