corpus.blog
Most cited
Talked about
Blogs
41554 blogs · [ { "id": "01a08782-ce59-72fe-825a-1eccc110a1ec", "title": "HackTheBox Certified Web Exploitation Expert (CWEE) - massive goshs update", "url": "https://hesec.de/posts/cwee-goshs-update/", "published_at": "2026-04-13T22:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc1879521", "title": "Farewall Old Friend and Welcome New One", "url": "https://hesec.de/posts/utm-opnsense/", "published_at": "2025-12-18T18:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc1df438f", "title": "[CVE-2025-46661] IPW Systems Metazo - Remote Code Execution via unauthenticated SSTI", "url": "https://hesec.de/posts/cve-2025-46661/", "published_at": "2025-05-26T07:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc2bd83f3", "title": "How I suddenly attended the AWE training in London", "url": "https://hesec.de/posts/osee-part1/", "published_at": "2024-02-21T19:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc2e9f3d7", "title": "My journey to OSED and concluding OSCE³", "url": "https://hesec.de/posts/osed-osce3/", "published_at": "2024-02-05T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc3d32002", "title": "[CVE-2023-22855] Kardex MLOG - Insecure path join to RCE via SSTI", "url": "https://hesec.de/posts/cve-2023-22855/", "published_at": "2023-02-07T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc48e2c9b", "title": "Can an AI design a CTF Challenge in Golang?", "url": "https://hesec.de/posts/chatgpt-ctf/", "published_at": "2022-12-06T12:45:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc5496094", "title": "My journey to OSWE", "url": "https://hesec.de/posts/oswe/", "published_at": "2022-11-18T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc5e96989", "title": "Bug Bounty - Cross-site request forgery is a thing", "url": "https://hesec.de/posts/bbh-csrf/", "published_at": "2022-09-12T06:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc6a7551f", "title": "I hacked the german armed forces, and all I got ...", "url": "https://hesec.de/posts/vdpbw-coin/", "published_at": "2022-03-04T13:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc6dc1f32", "title": "My journey to OSEP", "url": "https://hesec.de/posts/osep/", "published_at": "2022-01-18T07:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc7af6d9f", "title": "[Gophish] Sophisticated Setup", "url": "https://hesec.de/posts/gophish-sophisticated-setup/", "published_at": "2021-03-10T11:56:54+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc7dc846d", "title": "[goshs] Part #4 - Eyecandy, anyone?", "url": "https://hesec.de/posts/goshs-eyecandy/", "published_at": "2020-10-19T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc835b402", "title": "[goshs] Part #3 - I can haz featurez?", "url": "https://hesec.de/posts/goshs-new-features/", "published_at": "2020-10-13T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc874f650", "title": "[goshs] Part #2 - Trying to achieve code quality", "url": "https://hesec.de/posts/goshs-code-quality/", "published_at": "2020-10-06T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc8977276", "title": "[goshs] Part #1 - My take on SimpleHTTPServer in go", "url": "https://hesec.de/posts/golang-simplehttpserver/", "published_at": "2020-10-01T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc973580f", "title": "[CVE-2020-14293] and [CVE-2020-14294] 2 vulnerabilities in Secure File Transfer Solution Qiata by Secudos", "url": "https://hesec.de/posts/cve-2020-14293a14294/", "published_at": "2020-09-28T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccca28c6be", "title": "[CVE-2020-15492] INNEO Startup Tools 2017/2018 - From Path Traversal to RCE", "url": "https://hesec.de/posts/cve-2020-15492/", "published_at": "2020-07-22T06:00:00+00:00" } ] posts
Claim your blog
Back to hesec.de
Blog · corpus.blog/blogs/hesec.de/posts
hesec.de
hesec.de
2026
HackTheBox Certified Web Exploitation Expert (CWEE) - massive goshs update
original ↗
13 Apr 2026
2025
Farewall Old Friend and Welcome New One
original ↗
18 Dec 2025
[CVE-2025-46661] IPW Systems Metazo - Remote Code Execution via unauthenticated SSTI
original ↗
26 May 2025
2024
How I suddenly attended the AWE training in London
original ↗
21 Feb 2024
My journey to OSED and concluding OSCE³
original ↗
5 Feb 2024
2023
[CVE-2023-22855] Kardex MLOG - Insecure path join to RCE via SSTI
original ↗
7 Feb 2023
2022
Can an AI design a CTF Challenge in Golang?
original ↗
6 Dec 2022
My journey to OSWE
original ↗
18 Nov 2022
Bug Bounty - Cross-site request forgery is a thing
original ↗
12 Sept 2022
I hacked the german armed forces, and all I got ...
original ↗
4 Mar 2022
My journey to OSEP
original ↗
18 Jan 2022
2021
[Gophish] Sophisticated Setup
original ↗
10 Mar 2021
2020
[goshs] Part #4 - Eyecandy, anyone?
original ↗
19 Oct 2020
[goshs] Part #3 - I can haz featurez?
original ↗
13 Oct 2020
[goshs] Part #2 - Trying to achieve code quality
original ↗
6 Oct 2020
[goshs] Part #1 - My take on SimpleHTTPServer in go
original ↗
1 Oct 2020
[CVE-2020-14293] and [CVE-2020-14294] 2 vulnerabilities in Secure File Transfer Solution Qiata by Secudos
original ↗
28 Sept 2020
[CVE-2020-15492] INNEO Startup Tools 2017/2018 - From Path Traversal to RCE
original ↗
22 Jul 2020