YoyoChaud
cybersec, writeups and tech watch
Latest posts
7 postsHacking port 502 for dummies (Modbus/UMAS/Schneider)
Learning OT pentesting from scratch: understand Modbus and port 502, then reverse UMAS (Schneider's proprietary protocol) from two network captures, all the way to stopping an M580, forcing its outputs and stealing its program.
CVE-2026-63080: Aptabase, cross-tenant SQL injection via Liquid templates
Aptabase's stats filters land raw in ClickHouse SQL: SQL injection and cross-tenant data leakage.
CVE-2026-54461: Habitica, regex injection and ReDoS in member search
A Habitica search field forgets to escape the input on the username: regex injection, enumeration and ReDoS.
CVE-2026-45231: DumbAssets, stored XSS in asset fields
DumbAssets stores asset fields raw and re-renders them via innerHTML: stored XSS.
CVE-2026-45230: DumbAssets, deleting any file on the server
Unauthenticated path traversal in DumbAssets' /api/delete-file: a single ../ is enough to wipe server.js.
BSCP: easy pizi
A full write-up on the Burp Suite Certified Practitioner: prep, toolkit, strategy, and how the exam actually goes down.