Toggle navigation
HN
Paper
All
Show
Ask
Jobs
Top stories
Today
Last 7 days
Last months
This year
Stats
Stories by pentestercrab
Ruby Array Pack Bleed
62 points
pentestercrab
2026-01-06T23:46:24Z
nastystereo.com
Ruby Array Pack Bleed – Impacts Ruby 1.6.7 to 4.0.0
9 points
pentestercrab
2025-12-30T11:14:30Z
nastystereo.com
Inline Style Exfiltration: leaking data with chained CSS conditionals
1 points
pentestercrab
2025-08-27T13:33:58Z
portswigger.net
Marshal madness: A brief history of Ruby deserialization exploits
25 points
pentestercrab
2025-08-20T11:41:33Z
blog.trailofbits.com
Breaking the Sorting Barrier for Directed Single-Source Shortest Paths
96 points
pentestercrab
2025-08-09T05:34:09Z
arxiv.org
New Method to Leverage Unsafe Reflection and Deserialisation to RCE on Rails
1 points
pentestercrab
2025-03-05T05:00:39Z
www.elttam.com
Escaping Ruby's Gem:SafeMarshal Sandbox
2 points
pentestercrab
2025-01-10T17:14:34Z
nastystereo.com
Escaping Ruby's Gem:SafeMarshal Sandbox
3 points
pentestercrab
2024-12-26T05:30:27Z
nastystereo.com
RubyGem's Gem:SafeMarshal buffer overrun with length larger than fit into a byte
1 points
pentestercrab
2024-12-07T06:22:37Z
github.com
CORS Vulnerabilities in Go: Vulnerable Patterns and Lessons
1 points
pentestercrab
2024-12-03T17:38:59Z
pentesterlab.com
Shiny Vulnerabilities in R's Most Popular Web Framework
1 points
pentestercrab
2024-12-02T15:54:15Z
nastystereo.com
PentesterLab: Web Hacking and Security Code Review 600 exercises and 700 videos
1 points
pentestercrab
2024-11-27T16:16:25Z
pentesterlab.com
Cross-Site Post Requests Without a Content-Type Header – CSRF Attack
2 points
pentestercrab
2024-11-27T09:28:30Z
nastystereo.com
Execute commands by sending JSON? Ruby deserialization vulnerabilities
2 points
pentestercrab
2024-11-25T07:44:32Z
github.blog
JWT Libraries Block Algorithm Confusion: Key Lessons for Code Review
3 points
pentestercrab
2024-11-25T06:45:10Z
pentesterlab.com
Chosen-Prefix Collisions on AES-Like Hashing
2 points
pentestercrab
2024-11-25T06:01:51Z
eprint.iacr.org
Ruby 3.4 Universal RCE Deserialization Gadget Chain
2 points
pentestercrab
2024-11-25T05:29:51Z
nastystereo.com
Ruby's String Slice is Broken
3 points
pentestercrab
2024-11-04T06:28:52Z
nastystereo.com
Evaluate Markdown code blocks within Vim
2 points
pentestercrab
2024-10-26T12:08:29Z
github.com
SQL Injection Polyglot Payloads
1 points
pentestercrab
2024-10-22T15:08:06Z
nastystereo.com
1
2
3
4
5
6
7
8
9
10