Infosec Consultant & Pentester
  • Home
  • About
  • CVE's
  • Responsible Disclosure
  • 100 Days of Dev Ops
IDOR

Authenticated User IDOR

As an authenticated user, it would be possible to access personal information (Name and Address) of all householders registered on a online billing scheme.
Read more
Chris Young
iOS

Mobile Testing - iOS Part 1

In this post I'm going to run through some of
Read more
Chris Young
iOS

Mobile Testing - Getting Started

A few weeks ago I was tasked with performing a mobile application
Read more
Chris Young
vulnerabilities

ChargePlace Scotland IDOR

Having recently entered the world of EV cars, I needed to get
Read more
Chris Young
OSINT

Digital Profiling - The dirty side of Infosec ?

In this article I'm going to discuss getting down and
Read more
Chris Young
Hashcat

Working efficiently with Hashcat

Hashcat (https://hashcat.net/hashcat/) is one of those tools you frequently
Read more
Chris Young
Reverse Engineering

Reverse Engineering - Understanding Code Obfuscation

This post reflects my interest in malware analysis techniques - it should
Read more
Chris Young
OWASP

OWASP Newcastle Webinar - 5th May 2020

Earlier this year I did an internal presentation to my colleagues at
Read more
Chris Young
web app testing

File Upload to Remote Code Execution

In this post, I will walk you through a real life example
Read more
Chris Young
web app testing

Bugbounty Tips - Zseano Live Mentoring Series - XSS

Over the weekend I participated in @zseanos live stream bug bounty mentoring
Read more
Chris Young
web app testing

Reflected XSS on driver.grab.com

Thought I would do a quick write up of a small bug
Read more
Chris Young
pentesting

A Beginners guide to Pen Test Reporting

With a few exceptions, the majority of books I have read about
Read more
Chris Young
Infosec Consultant & Pentester © 2026
Powered by Ghost