bug bounty

$64k bug bounty rewarded for detecting secrets in github repositories

Sharon Brizinov built an automation that cloned and scanned tens of thousands of public GitHub repos for leaked secrets. Ended up reporting a bunch of leaks and pulled in around...

product

Meet Axilöck - VCS Agnostic Secret Prevention

Picture this: You push code after a late-night sprint. Hours later, Slack is on fire - an AWS key slipped into your commit. Your cloud is exposed. Crypto miners are...

RCE

CVE-2025-54236 (SessionReaper) - Magento RCE via Nested Deserialization

Table of Contents Executive Summary Background: Magento’s Web API Framework The Vulnerable Endpoint Request Processing Flow Understanding the Deserialization Process The Exploitation Chain Exploiting for RCE The Patch Analysis Affected...

Magento

CVE-2025-54236 (SessionReaper) - Magento RCE via Nested Deserialization

Table of Contents Executive Summary Background: Magento’s Web API Framework The Vulnerable Endpoint Request Processing Flow Understanding the Deserialization Process The Exploitation Chain Exploiting for RCE The Patch Analysis Affected...