RootSysAt's profile picture. We deliver top-tier security services, including penetration testing, code audits, security research, hardware hacking, and AppSec reviews.

RootSys

@RootSysAt

We deliver top-tier security services, including penetration testing, code audits, security research, hardware hacking, and AppSec reviews.

Pinned

🚨 Next.js and the Mutated Middleware [CVE-2025-57822] - a powerful SSRF primitive enabling full control over HTTP methods, headers & URLs. See how a subtle middleware bug can result in a high-impact vulnerability: 🔗 blog.rootsys.at/posts/nextjs-a… #AppSec #Nextjs #SSRF


RootSys reposted

Next.js and the Mutated Middleware - interesting analysis of CVE-2025-57822 in Next.js blog.rootsys.at/posts/nextjs-a… By @RootSysAt team #bugbounty #bugbountytips

payloadartist's tweet image. Next.js and the Mutated Middleware - interesting analysis of CVE-2025-57822 in Next.js

blog.rootsys.at/posts/nextjs-a…

By @RootSysAt  team

#bugbounty #bugbountytips

Thank you, Clint, for featuring our research — Next.js and the Mutated Middleware!

📚 tl;dr sec 302 🤖 LLM Honeypot Catches Threat Actor, ⛓️ Supply Chain Compromise Survey, 😈AI-powered Malware tldrsec.com/p/tldr-sec-302



RootSys reposted

Next.js has become one of the most popular web development frameworks 🤠 But its extensive functionality introduces multiple attack surfaces for security vulnerabilities to arise... 😬 In our latest article, we documented 3 possible ways to exploit server-side request forgery…

intigriti's tweet image. Next.js has become one of the most popular web development frameworks 🤠

But its extensive functionality introduces multiple attack surfaces for security vulnerabilities to arise... 😬

In our latest article, we documented 3 possible ways to exploit server-side request forgery…

RootSys reposted

nice write-up by the authors of the SSRF vector discovery in next.js (CVE-2025-57822), on which the latest Inti CTF/chall was based :

🚨 Next.js and the Mutated Middleware [CVE-2025-57822] - a powerful SSRF primitive enabling full control over HTTP methods, headers & URLs. See how a subtle middleware bug can result in a high-impact vulnerability: 🔗 blog.rootsys.at/posts/nextjs-a… #AppSec #Nextjs #SSRF



RootSys delivers top-tier security services. Check it out at rootsys.at.

RootSysAt's tweet image. RootSys delivers top-tier security services. Check it out at rootsys.at.

United States Trends

Loading...

Something went wrong.


Something went wrong.