eMtwo
@emtwoinfo
29
subscribers
2
photos
11
links
Blog:
https://emtwo.info
Download Telegram
Join
eMtwo
29 subscribers
eMtwo
Channel created
eMtwo
https://emtwo.info/articles/reflected_xss_via_magic_words/
eMtwo Security Tips
Reflected XSS via Magic Words
Overview
This report details the discovery and exploitation of a XSS vulnerability identified in the Vulnerability Disclosure Program (VDP) of a target website.
Reconnaissance
The reconnaissance phase began with the enumeration of subdomains to identify fresh…
🔥
1
eMtwo
https://emtwo.info/articles/data_crawling/
eMtwo Security Tips
🕷️
One Year of Data Engineering in the Field: A Practical Journey with a Startup Crawler Team
1. A Brief Overview of Crawling and Its Role
Crawling refers to the automated process of navigating through web pages to extract targeted data. This data can include product details, prices, denoscriptions, images, user reviews, and even hidden API endpoints.…
🔥
1
eMtwo
https://emtwo.info/articles/humans_and_machines/
eMtwo Security Tips
The Human Bootloader: How We Switch Personalities Without a Restart
‼️
Note: This is a psychology essay, not a technical manual. It uses the language and metaphors of computing to explore the inner depths of human personality, making complex inner processes easier to grasp through familiar technical imagery.
We often describe…
💊
2
eMtwo
eMtwo
pinned «
https://emtwo.info/articles/humans_and_machines/
»
eMtwo
Thanks for Telegram
@Durov
true programmer
⚡
2
💊
1
eMtwo
APK Hooking — coming soon...
#ReverseEngineering
💊
2
eMtwo
https://www.youtube.com/live/r3wBF9z74cI?si=hCoIwZ9uheAgprw9
YouTube
Sunday Live: AI/LLMs for code security review & lack of CVE submissions for Iranian products
زمان:
یکشنبه ۹ نوامبرحدود ۹:۳۰ شب بوقت تهران/ ۷ شب اروپا
موضوعات کلی:
* استفاده از AI/LLM در پروسته تولید و ارزیابی امنیتی کد
* (عدم) ثبت و گزارش رسمی آسیب پذیری ها در محصولات و نرم افزارها ایرانی
منابع:
گزارش و ثبت آسیب پذیری و ثبت شناسه CVE : آhtt…
eMtwo
https://cybersecuritynews.com/owasp-top-10-2025/
Cyber Security News
OWASP Top 10 2025 – Revised Version Released With Two New Categories
The Open Web Application Security Project (OWASP) has unveiled the 2025 edition of its flagship OWASP Top 10 2025, marking the eighth installment and introducing significant updates to address evolving software security threats.
eMtwo
OWASP Top 10 2025 introduces two new categories —
A03: Software Supply Chain Failures
and
A10: Mishandling of Exceptional Conditions
— emphasizing modern software supply chain risks and poor error handling as key security concerns.
eMtwo
https://emtwo.info/articles/survivorship_bias/
eMtwo Security Tips
Survivorship Bias: The Beautiful Illusion of Success
In the world of statistics and analysis, there’s a phenomenon that may not be widely known by name, but we deal with it almost every day in our lives: Survivorship Bias. It means we only see those who “survived”, succeeded, were visible—but those who failed…
⚡
2
eMtwo
https://youtu.be/Jf0GwvTsdTU?si=63EhwkAznM3XGUh5
YouTube
The WinRAR Chain Reaction: How CVE-2025-8088 Shook Office 2024
In today’s Ai000 research presentation, we’re breaking down one of the wildest vulnerabilities discovered recently — a flaw related to WinRAR that can indirectly mess with Office 2024’s startup behavior.
This vulnerability shows how a simple file-handling…
🔥
1
eMtwo
https://vercel.com/kb/bulletin/react2shell
Vercel
React2Shell Security Bulletin | Vercel Knowledge Base
CVE-2025-55182 is a critical vulnerability in React, Next.js, and other frameworks that requires immediate action
🔥
1
eMtwo
https://www.youtube.com/live/JTeg6P8OFPs?si=VTbjC9IhJkJVVKBn
whats up in the world?
YouTube
2026 trends
Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.
TWeb.init({scrollToPost:'emtwoinfo/52'});