From File Read to Root Shell: Chaining CVE-2025-58360 & CVE-2024-36401 on an Exposed GeoServer
2026-07-19
A publicly exposed GeoServer instance from 2018 was vulnerable to XXE (CVE-2025-58360) and eval injection (CVE-2024-36401). This post explains how file read became a reconnaissance oracle that led to unauthenticated RCE as root.
1612 words
|
8 minutes
From WebSocket PING to Jetty Backend: Reconnaissance of a Live Casino Platform
2026-06-21
How a single intercepted WebSocket request led to information disclosure, directory listing, and backend fingerprinting of a live casino platform.
772 words
|
4 minutes