
Bug Bounty writeups, Vulnerability Research, Tutorials, Tips&Tricks

Primary LanguageJavaScript

Most common security vulnerabilities in npm static content/file servers modules


Hidden directories and files as a source of sensitive information about web application

Some analysis about how to get information about web application from folders like .git , .idea and similar. https://github.com/bl4de/research/tree/master/hidden_directories_leaks

As a part of this, I'm working on tool (in Python) to extract data from revealed Git repositories:


RAA Ransomware JavaScript code analysis

Detailed, step-by-step analysis of RAA ransomware, created entirely in JavaScript


Simple JavaScript malware code deobfuscation walkthrough

JavaScript malware code deobfuscation step-by-step walkthrough
