Somdev Sangwan·Jul 23, 2019Illusion of Randomness & Exploiting RNGsEntropy, a more scientific term for what we call “randomness” is the measure of uncertainty or disorder. But the question is, how do we…A response icon1A response icon1
Somdev Sangwan·Jul 12, 2019Deblurring images for OSINT — Part 2Let’s reverse Pixelize blur.A response icon2A response icon2
Somdev Sangwan·Jun 29, 2019Finding vulnerabilities in Source CodeAlthough I am not a professional source code auditor but I am a programmer as well as a security researcher. The article is based on my…A response icon1A response icon1
Somdev Sangwan·Apr 28, 2019Learn to code in less than a weekProgramming is an amazing skill to have and I believe it’s essential if you want to be good at information security. With the magic of…A response icon11A response icon11
Somdev Sangwan·Apr 22, 2019How I found 5 ReDOS Vulnerabilities in Mod Security CRSThis write-up assumes that the reader has intermediate (or higher) knowledge of regular expressions. If you are not very familiar with…A response icon1A response icon1
Somdev Sangwan·Feb 23, 2019Exploiting Regular ExpressionsA regular expression (or regex) is basically a search pattern. For example, the expression [cb]atwill match both cat and bat. This isn’t a…A response icon4A response icon4
Somdev Sangwan·Jan 7, 2019Unblurring Images for OSINT and more — Part 1During intelligence operations, we often come across images that may contain important information but they are too blurred, noisy or just…A response icon4A response icon4
Somdev Sangwan·Oct 6, 2018Backdooring Websites with just 35 bytesNinjas need to be stealthy but trading off usability for stealth is a bit expensive. We want our web shell to be able to do everything…
Somdev Sangwan·Jul 30, 2018Cracking eAadhar password in 2 seconds with MathsThis article is already kind of lengthy so let’s get straight to the point.A response icon22A response icon22