06 Apr 2025 · 0 min read

A quieter week but still some good content!

🪲 XSS To RCE By Abusing Custom File Handlers - Kentico Xperience CMS (CVE-2025-2748)

Another great post from the WatchTowr team: XSS To RCE By Abusing Custom File Handlers - Kentico Xperience CMS (CVE-2025-2748).

🧩 Intigriti 0325 Challenge Writeup

An excellent write-up for an Intigriti's CTF challenge with 3 ways to solve it (2 unintended and the intended one): Intigriti 0325 Challenge Writeup.

Photo of PentesterLab
PentesterLab
The platform to learn web hacking and security code review