SOAPwn: Pwning .NET Framework Applications Through HTTP Client Proxies and WSDL

Stop Putting Your Passwords into Random Websites (Yes, Seriously, You Are the PR

Is This Bad? This Feels Bad. (Fortra GoAnywhere CVE-2025-10035)

Insufficiently sanitized data allows unauthenticated access to FreePBX Admin

Bypassing Authentication Like It’s The β€˜90s - Pre-Auth RCE Chain(s) in Kentico Xperience CMS

Supply chain security and the danger of abandoned S3 buckets

Backdooring Your Backdoors – Another $20 Domain, More Governments

How WatchTowr Explored the Complexity of a Vulnerability in a Secure Firewall Appliance

We spent $20 to achieve RCE and accidentally became the admins of .mobi

Palo Alto – Putting the Protecc in GlobalProtect (CVE-2024-3400)

90s Vulns In 90s Software (Exim) - Is the Sky Falling?