ssrf poc xspa aws iam bashware bugbounty claude-code csrf process explorer security-credentials shell-scripting walkthrough windows writeup xss adobe agentic-coding ai-agents amazon-q ambient-computing anthropic browser fuzzing calendar cloud-security confused-copilot convertsidtostringsid copilot ctf cybe-ai-summit deepseek deepseek-v4 excessive-agency exploitation facebook gemini generative-ai gettokeninformation glm-5.2 gmail google-vrp hooks html indirect-prompt-injection iot kimi kimi-k3 mcp metasploit moonshot mssql mutation xss mute mysql ollama omniture openprocess openprocesstoken oracle owasp-top-10-llm pdf pentest postgresql privilege-confusion process monitor python rce reconnaissance scripting security-review sendmessage shell shells smart-home sqli system-prompt tool-capabilities tuya uac username enumeration vulncon vulnerability-disclosure webshell websocket windows registry wordpress xwh yahoo
Author's picture

Riyaz Walikar

Build, Break, Repeat
Independent Security Researcher