41554 blogs · [ { "id": "01a08782-ce59-72fe-825a-1eccc110a1ec", "title": "HackTheBox Certified Web Exploitation Expert (CWEE) - massive goshs update", "url": "https://hesec.de/posts/cwee-goshs-update/", "published_at": "2026-04-13T22:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc1879521", "title": "Farewall Old Friend and Welcome New One", "url": "https://hesec.de/posts/utm-opnsense/", "published_at": "2025-12-18T18:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc1df438f", "title": "[CVE-2025-46661] IPW Systems Metazo - Remote Code Execution via unauthenticated SSTI", "url": "https://hesec.de/posts/cve-2025-46661/", "published_at": "2025-05-26T07:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc2bd83f3", "title": "How I suddenly attended the AWE training in London", "url": "https://hesec.de/posts/osee-part1/", "published_at": "2024-02-21T19:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc2e9f3d7", "title": "My journey to OSED and concluding OSCE³", "url": "https://hesec.de/posts/osed-osce3/", "published_at": "2024-02-05T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc3d32002", "title": "[CVE-2023-22855] Kardex MLOG - Insecure path join to RCE via SSTI", "url": "https://hesec.de/posts/cve-2023-22855/", "published_at": "2023-02-07T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc48e2c9b", "title": "Can an AI design a CTF Challenge in Golang?", "url": "https://hesec.de/posts/chatgpt-ctf/", "published_at": "2022-12-06T12:45:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc5496094", "title": "My journey to OSWE", "url": "https://hesec.de/posts/oswe/", "published_at": "2022-11-18T08:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc5e96989", "title": "Bug Bounty - Cross-site request forgery is a thing", "url": "https://hesec.de/posts/bbh-csrf/", "published_at": "2022-09-12T06:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc6a7551f", "title": "I hacked the german armed forces, and all I got ...", "url": "https://hesec.de/posts/vdpbw-coin/", "published_at": "2022-03-04T13:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc6dc1f32", "title": "My journey to OSEP", "url": "https://hesec.de/posts/osep/", "published_at": "2022-01-18T07:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc7af6d9f", "title": "[Gophish] Sophisticated Setup", "url": "https://hesec.de/posts/gophish-sophisticated-setup/", "published_at": "2021-03-10T11:56:54+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc7dc846d", "title": "[goshs] Part #4 - Eyecandy, anyone?", "url": "https://hesec.de/posts/goshs-eyecandy/", "published_at": "2020-10-19T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc835b402", "title": "[goshs] Part #3 - I can haz featurez?", "url": "https://hesec.de/posts/goshs-new-features/", "published_at": "2020-10-13T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc874f650", "title": "[goshs] Part #2 - Trying to achieve code quality", "url": "https://hesec.de/posts/goshs-code-quality/", "published_at": "2020-10-06T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc8977276", "title": "[goshs] Part #1 - My take on SimpleHTTPServer in go", "url": "https://hesec.de/posts/golang-simplehttpserver/", "published_at": "2020-10-01T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccc973580f", "title": "[CVE-2020-14293] and [CVE-2020-14294] 2 vulnerabilities in Secure File Transfer Solution Qiata by Secudos", "url": "https://hesec.de/posts/cve-2020-14293a14294/", "published_at": "2020-09-28T16:00:00+00:00" }, { "id": "01a08782-ce59-72fe-825a-1eccca28c6be", "title": "[CVE-2020-15492] INNEO Startup Tools 2017/2018 - From Path Traversal to RCE", "url": "https://hesec.de/posts/cve-2020-15492/", "published_at": "2020-07-22T06:00:00+00:00" } ] posts Claim your blog
Back to hesec.de
Blog · corpus.blog/blogs/hesec.de/posts

hesec.de

hesec.de

2026

2025

2024

2023

2022

2021

2020