<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><link>https://bsky.app/profile/pspaul95.bsky.social</link><title>@pspaul95.bsky.social - pspaul</title><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3mkb2ytsn722r</link><description>Pwning PostgreSQL was quite fun, excited to share our research at OffensiveCon!&#xA;&#xA;https://www.offensivecon.org/speakers/2026/paul-gerste-and-moritz-sanft.html</description><pubDate>24 Apr 2026 17:39 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3mkb2ytsn722r</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3m6yo6uy32c27</link><description>My TROOPERS25 talk has been uploaded! If you ever wondered if &#34;style-src: &#39;unsafe-line&#39;&#34; in your CSP is bad, this one is for you.&#xA;&#xA;Scriptless Attacks: Why CSS is My Favorite Programming Language&#xA;https://www.youtube.com/watch?v=Owp-mHUyg9I</description><pubDate>02 Dec 2025 09:51 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3m6yo6uy32c27</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3m4t3ns34yk2c</link><description>This was pretty fun to exploit! Even though I didn&#39;t manage to pwn the version used for Pwn2Own Berlin, I still learned a ton about LLMs. Maybe I can get my revenge in future competitions 🤞&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>04 Nov 2025 17:45 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3m4t3ns34yk2c</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3lsjennlegk2d</link><description>Great bug chain by my team mate Yaniv that can pwn a whole org, starting with a single user click! I was also able to contribute a bit by creating my first port of a Chrome n-day exploit :)&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>26 Jun 2025 14:48 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3lsjennlegk2d</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3lrbanvfmb22e</link><description>This was a fun one to discover!&#xA;SQL syntax can be ambiguous, and MySQL anticipated this a long time ago. Other SQL dialects stuck to the spec, leading to SQL injection when the right stars align:&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>10 Jun 2025 15:50 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3lrbanvfmb22e</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3lik62alr5s2w</link><description>Ever wondered what the Alt-Svc header is used for? Well, it can make you a MitM if you control it!&#xA;&#xA;I can finally publish the writeup to my GymTok challenge: control the header, become MitM, and perform a cross-protocol attack!&#xA;&#xA;https://blog.pspaul.de/posts/gymtok-breaking-tls-with-alt-svc/</description><pubDate>19 Feb 2025 16:10 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3lik62alr5s2w</guid></item><item><link>https://bsky.app/profile/pspaul95.bsky.social/post/3lhiqwzk3ms26</link><description>Wow, thanks for 2nd place! Didn&#39;t expect this, maybe it&#39;s my sign to finally write it down in text form and tackle all the follow-up ideas 👀&#xA;&#xA;[contains quote post or other embedded content]</description><pubDate>06 Feb 2025 09:18 +0000</pubDate><guid isPermaLink="false">at://did:plc:5csjilclom6dlcdulsm5ujj2/app.bsky.feed.post/3lhiqwzk3ms26</guid></item></channel></rss>