@webtonull Profile picture

Erlend Oftedal

@webtonull

Security researcher at Crosspoint Labs. AppSec. Tweets are my own and do not express the opinion of my employer. OWASP. retire.js

Joined January 2008
Similar User
Jim Manico from Manicode Security photo

@manicode

alex photo

@insertScript

koto photo

@kkotowicz

Petko D. Petkov photo

@pdp

Ryan Barnett photo

@ryancbarnett

Stefano Di Paola photo

@WisecWisec

Roman Shafigullin photo

@shafigullin

Superevr photo

@superevr

Trond Arve Wasskog photo

@ilmyggo

Johannes Brodwall photo

@jhannes

Ståle Pettersen photo

@kozmic

Ole-Martin Mørk photo

@olemartin

Chris Dale photo

@ChrisADale

Giorgio Maone 🐘 @ma1@todon.eu photo

@ma1

xorb photo

@evil_xorb

#BallonDor Caroline Graham Hansen: 32 goals, 28 assists, average score 8.4 Aitana Bonmati: 19 goals, 18 assists, average score 8.0 Ok…


Back when I found an XSS in the Wifi Pineapple admin GUI by creating a wifi called "</textarea>" + XSS vector 😅


Erlend Oftedal Reposted

new blogpost time!! this one's a fun writeup on a vulnerability chain i found across multiple google services that earned me a $4133.70 bounty lots of fun css as usual! i had to recreate a bunch of drive/docs/gmail/youtube UIs c: have fun! lyra.horse/blog/2024/09/u…


Erlend Oftedal Reposted

Ticket sales for BSides Oslo 2024 just opened at letsreg.com/no/event/bside….


Erlend Oftedal Reposted

Not to mention the staff like Kelly and Dawn and some of the old school folks like Laura Grau and Kate Hartmann. They were amazing and held so much together for what was basically a community of misfits trying to do good work!


Great research from Gareth! You should be really restrictive in which characters you allow in email adresses. Ignore the RFC and restrict to what you actually need (allow as few special chars as possible)

Everyone knows that the RFCs for email addresses are crazy. This post will show without doubt that you should not be following the RFC. portswigger.net/research/split…



Erlend Oftedal Reposted

How's your summer? Come up with any swell ideas? Our CFP is still open, and you have until August 11 to submit it docs.google.com/forms/d/1K3HxJ…


You’re welcome, Southgate

One would think Southgate would want to use the PL playmaker of the year when they score too few goals #EURO2024 #AVFC



One would think Southgate would want to use the PL playmaker of the year when they score too few goals #EURO2024 #AVFC


Erlend Oftedal Reposted

This is Jimmy Zhong This guy made $3.4 billion and hid it in a Cheetos popcorn tin Just one mistake, and he lost EVERYTHING Here’s his story 🧵👇

Tweet Image 1

Erlend Oftedal Reposted

We're out of hibernation and gearing up for this year's event! The date is October 14th 2024 with more details to follow, but our CFP is open: docs.google.com/forms/d/1K3HxJ…


The «new facebook profiles for people not using their real name» are super useful… for spam.


Erlend Oftedal Reposted

Interested in the full story and technical details? Read it here: breachproof.net/blog/lethal-in… P.S. more is coming!


The next #OWASP Oslo chapter meeting will feature one talk about testing for race conditions and one about vulnerabilities in appliances: meetu.ps/e/N4bVR/3Zn6s/i


Erlend Oftedal Reposted

I'm excited to share a new open-source project: the Silicon LLM Training & Inference Toolkit, short SiLLM. Check out the project on Github here: github.com/armbues/SiLLM


Rest in peace. Sad news

@rossjanderson Professor Ross Anderson, FRS, FREng Dear friend and treasured long term campaigner for privacy and security, Professor of Security Engineering at Cambridge University and Edinburgh University, Lovelace Medal winner, has died suddenly at home in Cambridge.

Tweet Image 1


Loading...

Something went wrong.


Something went wrong.