ITSecurityguard's profile picture. rɪsˈpɒnsəbl dɪsˈkləʊʒə 
https://responsibledisclosure.io
https://wss.sh
https://huntdb.com

Patrik Fehrenbach

@ITSecurityguard

rɪsˈpɒnsəbl dɪsˈkləʊʒə https://responsibledisclosure.io https://wss.sh https://huntdb.com

Angepinnt

Made a simple dashboard to help track/search CVEs and security vulnerabilities in near real-time. No fancy stuff - just a clean interface to see what's burning in the security world right now. (it's Ivanti🙈) huntdb.com/cve/CVE-2025-0…) huntdb.com Feedback welcome!

ITSecurityguard's tweet image. Made a simple dashboard to help track/search  CVEs and security vulnerabilities in  near real-time. No fancy stuff - just a clean interface to see what's burning in the security world right now.  (it's Ivanti🙈) huntdb.com/cve/CVE-2025-0…) 
huntdb.com

Feedback welcome!

👌 this is it!

looks like claude code solved it 😝

rez0__'s tweet image. looks like claude code solved it 😝


- I am not good enough to do bb full time - I don't want to constantly argue about CVSS scoring - I don't want to race in the automation game - I need a stable income for my family & bank - I want to learn different skillsets - I don't want that stress in my life

There are quite a few reasons why someone, particularly someone who is not in their 20s might not do bb full time: - No stable pay check, a lot of pressure when you have rent, bills, and a family to support - No benefits like health insurance, pensions, etc - No immigration



Are we still thrilled and is the 𝐥𝐚𝐧𝐝𝐬𝐜𝐚𝐩𝐞 𝐜𝐡𝐚𝐧𝐠𝐢𝐧𝐠 𝐟𝐚𝐬𝐭𝐞𝐫 𝐭𝐡𝐚𝐧 𝐞𝐯𝐞𝐫?


I'd love to witness the @FFmpeg account's total meltdown if they ever ran a Bug Bounty program


Patrik Fehrenbach hat repostet

New write-up: CVE-2025-52665 (RCE) in UniFi OS by @CatchifySA . catchify.sa/post/cve-2025-… Enjoy! #infose


Patrik Fehrenbach hat repostet

As a homage to the work of @Blaklis_, our Security Researcher @softpoison_ debuts his first research post on reverse engineering a critical unauthenticated RCE in Magento (SessionReaper) CVE-2025-54236 at @SLCyberSec: slcyber.io/assetnote-secu…


Patrik Fehrenbach hat repostet

me: can you center this div the unreleased Chinese base model I accidentally picked on openrouter:


New write-up on the bugs we found in Adobe Experience Manager. Dispatcher bypasses, SSRF, XXE, EL injection — the usual suspects 🦆 enjoy! slcyber.io/assetnote-secu…


👀 4 hours Haddix Modern Recon is a no brainer! Save that date and join.

After seeing an INCREDIBLE response at Wild West Hacking Fest for our new recon preso, we decided to do a FREE 4-hour workshop! Join us Dec 8th! executiveoffense.beehiiv.com/p/free-trainin…

Jhaddix's tweet image. After seeing an INCREDIBLE response at Wild West Hacking Fest for our new recon preso, we decided to do a FREE 4-hour workshop!

Join us Dec 8th!

executiveoffense.beehiiv.com/p/free-trainin…


technology peaked here and it's been downhill ever since

ITSecurityguard's tweet image. technology peaked here and it's been downhill ever since

Ever stumbled on an AEM box and thought “ok… now what?” 😏 We dropped hopgoblin — new research + tool XXE, SSRF, XSS & more (CVE-2025-54251, -54249, -54252, -54250/47/48/46). 👀 time for some crits eh? 👉 github.com/assetnote/hopg…

ITSecurityguard's tweet image. Ever stumbled on an AEM box and thought “ok… now what?” 😏 

We  dropped hopgoblin — new research + tool  XXE, SSRF, XSS & more (CVE-2025-54251, -54249, -54252, -54250/47/48/46). 👀 

time for some crits eh?

👉 github.com/assetnote/hopg…

Patrik Fehrenbach hat repostet

NEED YOUR HELP! My Friend/Teacher Soroush (@irsdl) Is looking for a new company to join, you know him as the .NET-God, the guy who has popped exchange, sharepoint, has maintained ysoserial_.net for years, contributed to the exploitation scene numerous times, taught all of you…


👀 Pre-Auth RCEs and an XXE in Adobe AEM Manager Forms 😏 give it a read!

The @SLCyberSec research team is releasing our final research post for our Christmas in July efforts, two RCEs and one XXE (all pre-auth) in Adobe Experience Manager Forms. One of the RCEs and the XXE still do not have official patches: slcyber.io/assetnote-secu…



Patrik Fehrenbach hat repostet

The @SLCyberSec research team is releasing our final research post for our Christmas in July efforts, two RCEs and one XXE (all pre-auth) in Adobe Experience Manager Forms. One of the RCEs and the XXE still do not have official patches: slcyber.io/assetnote-secu…


Patrik Fehrenbach hat repostet

I have launched YSoNet (ysonet.net) and added #SharePoint CVE-2025-49704 payload generator to it as the first thing. Here is how this can work: Running command: ``` ysonet.exe -p sharepoint --cve=CVE-2025-49704 -var 1 -c "calc" ``` Running C# code: ``` ysonet.exe…


Patrik Fehrenbach hat repostet

When applying for a job at McDonald's, over 90% of franchises use "Olivia," an AI-powered chatbot. We (@iangcarroll and I) discovered a vulnerability that could allow an attacker to access the over 64 million chat records using the password "123456". ian.sh/mcdonalds


Patrik Fehrenbach hat repostet

Hey peeps! As many of you know, I was diagnosed with ALS nearly 2 years ago. I continue to fight a losing battle with it every day. I am determined to live long enough to attend this ALS Walk fundraiser in October. I would sincerely appreciate any small donation you can spare to…


Honestly a bit surreal, but I’ll be joining @assetnote as a Security Researcher soon🦆. Excited to be part of such a brilliant team.

ITSecurityguard's tweet image. Honestly a bit surreal, but I’ll be joining @assetnote as a Security Researcher soon🦆. Excited to be part of such a brilliant team.

Loading...

Something went wrong.


Something went wrong.