Hi there!
This is a repo containing some of my security writeups. Enjoy! <3
CVEs:
- CVE-2025-56007 - CRLF-injection in KeeneticOS before 4.3 at "/auth" API endpoint.
- CVE-2025-56008 - XSS in KeeneticOS before 4.3 at "Wireless ISP" page.
- CVE-2025-56009 - CSRF in KeeneticOS before 4.3 at "/rci" API endpoint.
CTFs:
- UofTCTF_quals_2026 - some funny web tasks (no-quotes-X) from UofTCTF Quals 2026.