Log inSign up
hashkitten
24 posts
user avatar
hashkitten
@hash_kitten
vulnerability research @assetnote // hacking // codegolf // ctf with 🛹🐶
Joined September 2016
178
Following
2,245
Followers
  • user avatar
    hashkitten
    @hash_kitten
    Aug 28, 2023
    I've written another set of challenges this year and I'm really happy with how they turned out. Make sure you check out DUCTF this weekend :)
    user avatar
    DownUnderCTF
    @DownUnderCTF
    Aug 25, 2023
    Attention ALL Hackers - We are now ONE WEEK AWAY from DUCTF 4.0! 🔥 Sign-ups are now OPEN! 🔥 play.duc.tf
    Image
    GIF
    4.9K
  • user avatar
    hashkitten
    @hash_kitten
    Sep 17, 2022
    I've written some challenges this year. Make sure you check DUCTF out! =)
    user avatar
    DownUnderCTF
    @DownUnderCTF
    Sep 16, 2022
    You all know the drill by now! What are you waiting for! Registration is open at play.duc.tf and only 1 week till the madness starts 🔥🔥🔥
    Image
    GIF
  • user avatar
    hashkitten
    @hash_kitten
    Sep 23, 2023
    Replying to @PortSwiggerRes @avlidienbrunn and @fransrosen
    If you additionally don't have {}, you can do "".x=location=name+""
    420
  • user avatar
    hashkitten
    @hash_kitten
    Mar 21, 2023
    Replying to @Synacktiv and @_remsio_
    Very neat and clean writeup =)
    446
  • user avatar
    hashkitten
    @hash_kitten
    Nov 4, 2022
    Replying to @intigriti
    Base64 encode first using php://filter, then prepend 'GIF89a' using github.com/wupco/PHP_INCL… . PHP always recognizes this as a valid image so the check will pass. Full POC: tio.run/##tVRdb4IwFH33…
  • user avatar
    hashkitten
    @hash_kitten
    Dec 8, 2023
    Replying to @joaxcar
    22 chars for an alert with the empty string :)
    362
  • user avatar
    hashkitten
    @hash_kitten
    Oct 19, 2022
    Replying to @c3l3si4n @marcioalm and 2 others
    Unfortunately iconv filter based payloads seem very dependent on the version of the underlying system iconv library

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement