Archives
- 15JunWhen a Password Reset Is Not Enough: Discovering Inconsistent Session Revocation in Galaxus
- 25MayCVE-2026-48117 - Account Takeover via Pre-Registration Attack in DroneAware Node
- 02MayHow Not to Enforce Device-Limited Content
- 10Maru5CMS: Session Forgery, Privilege Escalation, and RCE
- 04FebGarmin MapShare: Insecure Link Design and User Data Privacy (Part 2)
- 12JanGarmin inReach Security: Insecure Link Design and User Data Privacy (Part I)