corpus.blog
Most cited
Talked about
Blogs
41554 blogs · [ { "id": "01a08780-7725-71ac-9cda-e8a53a26e73a", "title": "WinBoat: Drive by Client RCE + Sandbox escape.", "url": "https://hack.do/posts/winboat-guest-service-host-rce/", "published_at": "2025-12-15T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53aad80d4", "title": "Matt Austin", "url": "https://hack.do/about/", "published_at": "2025-08-25T23:00:36+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53af0f022", "title": "RCE in buf CLI (from http://buf.build)", "url": "https://hack.do/posts/buf-cli-registry-login-rce/", "published_at": "2025-03-07T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53b154769", "title": "CVE-2025-48938 - GitHub CLI RCE", "url": "https://hack.do/posts/cve-2025-48938/", "published_at": "2025-02-22T23:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53b8d446b", "title": "CVE-2021-30618 - Chrome Headless Remote Debugging RCE via XSS", "url": "https://hack.do/posts/cve-2021-30618/", "published_at": "2024-01-15T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53c30f9f8", "title": "Thinking Outside the Sandbox: Decoding and Defeating Node.js Permissions", "url": "https://hack.do/posts/thinking-outside-the-sandbox/", "published_at": "2023-12-16T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53cd1c836", "title": "Burp Suite RCE via Chrome Remote Debugging", "url": "https://hack.do/posts/burp-suite-rce/", "published_at": "2023-10-10T08:24:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53d739b50", "title": "CVE-2023-30587 - Node.js Permission Bypass via Inspector Module", "url": "https://hack.do/posts/cve-2023-30587/", "published_at": "2023-09-15T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53dd85693", "title": "jsonwebtoken: String Payload Parsing Inconsistency Leads to Auth Bypass", "url": "https://hack.do/posts/node-jsonwebtoken-string-payload-auth-bypass/", "published_at": "2023-02-03T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53e731dfa", "title": "Node.js Permission Bypass via WASI Module", "url": "https://hack.do/posts/nodejs-wasi-permission-bypass/", "published_at": "2023-01-15T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53f52a92b", "title": "CVE-2020-17091 - Microsoft Teams Desktop RCE via Missing Context Isolation", "url": "https://hack.do/posts/cve-2020-17091/", "published_at": "2020-11-16T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a53fb3cc57", "title": "Docker Desktop (formaly Kitematic) Container Escape and RCE via “Web Preview”", "url": "https://hack.do/posts/docker-kitematic-rce/", "published_at": "2019-09-17T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a5409bfed4", "title": "Ghost CMS: Privilege Escalation via Post Preview", "url": "https://hack.do/posts/ghost-code-injection-privilege-escalation/", "published_at": "2019-04-29T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a540b14479", "title": "CVE-2018-15685 - Electron WebPreferences Remote Code Execution", "url": "https://hack.do/posts/cve-2018-15685/", "published_at": "2018-07-30T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a5412a0b52", "title": "XSS in Outlook Adaptive Cards via Action.OpenUrl", "url": "https://hack.do/posts/outlook-adaptive-cards-xss/", "published_at": "2018-03-18T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a541f91fab", "title": "Elmowned - Hacking Elmo", "url": "https://hack.do/posts/elmowned/", "published_at": "2017-10-16T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a5421f91e5", "title": "Unsafe Code Execution in static-eval", "url": "https://hack.do/posts/static-eval/", "published_at": "2017-10-16T00:00:00+00:00" }, { "id": "01a08780-7725-71ac-9cda-e8a542d0684b", "title": "Visual Studio Code 1.9.1: Arbitrary Code Execution via Markdown Preview", "url": "https://hack.do/posts/vscode-markdown-preview-rce/", "published_at": "2017-02-13T00:00:00+00:00" } ] posts
Claim your blog
Back to hack.do
Blog · corpus.blog/blogs/hack.do/posts
hack.do
hack.do
2025
WinBoat: Drive by Client RCE + Sandbox escape.
original ↗
15 Dec 2025
Matt Austin
original ↗
25 Aug 2025
RCE in buf CLI (from http://buf.build)
original ↗
7 Mar 2025
CVE-2025-48938 - GitHub CLI RCE
original ↗
22 Feb 2025
2024
CVE-2021-30618 - Chrome Headless Remote Debugging RCE via XSS
original ↗
15 Jan 2024
2023
Thinking Outside the Sandbox: Decoding and Defeating Node.js Permissions
original ↗
16 Dec 2023
Burp Suite RCE via Chrome Remote Debugging
original ↗
10 Oct 2023
CVE-2023-30587 - Node.js Permission Bypass via Inspector Module
original ↗
15 Sept 2023
jsonwebtoken: String Payload Parsing Inconsistency Leads to Auth Bypass
original ↗
3 Feb 2023
Node.js Permission Bypass via WASI Module
original ↗
15 Jan 2023
2020
CVE-2020-17091 - Microsoft Teams Desktop RCE via Missing Context Isolation
original ↗
16 Nov 2020
2019
Docker Desktop (formaly Kitematic) Container Escape and RCE via “Web Preview”
original ↗
17 Sept 2019
Ghost CMS: Privilege Escalation via Post Preview
original ↗
29 Apr 2019
2018
CVE-2018-15685 - Electron WebPreferences Remote Code Execution
original ↗
30 Jul 2018
XSS in Outlook Adaptive Cards via Action.OpenUrl
original ↗
18 Mar 2018
2017
Elmowned - Hacking Elmo
original ↗
16 Oct 2017
Unsafe Code Execution in static-eval
original ↗
16 Oct 2017
Visual Studio Code 1.9.1: Arbitrary Code Execution via Markdown Preview
original ↗
13 Feb 2017