Infosec Consultant & Pentester
  • Home
  • About
  • CVE's
  • Responsible Disclosure
  • 100 Days of Dev Ops
web app testing

Basic CURL commands

List HTTP methods: curl -i -X OPTIONS http://10.10.10.57
Read more
Chris Young
dvwa

DVWA - Command Injection

Command injection is an attack in which the goal is execution of
Read more
Chris Young
Infrastructure as Code

Getting started with Terraform.io

I seem to be failing to blog as much as I would
Read more
Chris Young
information security

The inherent assumption of security

This post is more of an observation than some of my other
Read more
Chris Young
pentesting

Hack the Box - Shocker Walkthrough

Walkthrough of Shocker (10.10.10.56) on Hack the box. nmap:
Read more
Chris Young
pentesting

Shellshock Vulnerability - Privilege escalation

In my previous post, we looked at how to exploit the shellshock
Read more
Chris Young
social engineering

Creating a malicious mobile app environment - Part 2 of 2

In part one we walked through the process of creating the first
Read more
Chris Young
social engineering

Creating a malicious mobile app environment - Part 1 of 2

This article (part 1 of 2) is based around my final submission
Read more
Chris Young
pentesting

Shellshock Vulnerability

Given that my first pentesting experience resulted in a discovery of the
Read more
Chris Young
information security

Pentesting Experience

In this post, I'm going to give you an overview
Read more
Chris Young
book-review

Book Review: ltr101 - Breaking into Information Security

Being a relative newb to the world of information security, I thought
Read more
Chris Young
information security

Shadow IT - Are employee's guilty of putting businesses at risk ?

In late August 2016, a huge cache of personal data from the
Read more
Chris Young
Infosec Consultant & Pentester © 2026
Powered by Ghost