Burninator Sec

This blog is about the educational (and sometimes entertainment) value of simple hacks. For active vulnerabilities, real names are concealed.

Saturday, January 17, 2026

PNG Image XSS + Unrestricted File Upload

›
Sometimes there are pesky scenarios where a site ostensibly only allows images to be uploaded, making RCE and XSS a bit more difficult. Norm...
Wednesday, August 13, 2025

OpenCPN Export GPX Navigation Route - CVE-2025-XXXXX

›
In OpenCPN, each exported route is accessible via a predictable, incrementally number ID in the URL. An attacker who obtains or guesses a si...
Monday, November 4, 2024

GPT: Burp Suite Exploit Validation, AI-Generated 0-Day Payloads and More

›
Ever since the day I had GPT-4 write a widget-chain for an old 0-day in five minutes that originally took me two or three work days to creat...
Wednesday, December 28, 2022

Input-Format-Depedent-XSS: Restrictions Are Your Best Friend!

›
Recently, I had a stubborn form where I attempted XSS in the free text fields, without success. Eventually, I also started looking at other ...
Friday, November 18, 2022

Open Redirects - Payload List vs Manual Testing

›
  In order to bypass a fix for a open redirect a second time, you may need to get creative with your payload list. The original issue was ex...

Captcha Bypass Using Tesseract OCR and Python

›
import cv2 import pytesseract from urllib.request import urlopen import numpy as np from bs4 import BeautifulSoup import requests import url...
Tuesday, July 26, 2022

Twitter Removed the Blocked Account Export - Let's Put it Back!

›
I'm reposting my post from Stack Overflow here (+ the script) in case it gets deleted. Other users have also noticed Twitter's ...
›
Home
View web version
Powered by Blogger.