<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>m1n1b0ttle Research Log</title>
  <subtitle>Security research, vulnerability analysis, reversing lab notes</subtitle>
  <id>https://bluen0r.com/</id>
  <link href="https://bluen0r.com/atom.xml" rel="self"/>
  <link href="https://bluen0r.com/"/>
  <updated>2026-06-22T12:11:37.657Z</updated>
  <author>
    <name>BlueN0r</name>
  </author>
  <entry>
    <title>JWT(Json Web Token) 공격 기법</title>
    <link href="https://bluen0r.com/posts/JWT(Json Web Token) 공격 기법"/>
    <id>https://bluen0r.com/posts/JWT(Json Web Token) 공격 기법</id>
    <updated>2026-06-22</updated>
    <summary>JWT(Json Web Token) 공격 기법</summary>
  </entry>
  <entry>
    <title>CVE-2025-57819 - FreePBX 미인증 SQL Injection</title>
    <link href="https://bluen0r.com/posts/CVE-2025-57819 - FreePBX 미인증 SQL Injection"/>
    <id>https://bluen0r.com/posts/CVE-2025-57819 - FreePBX 미인증 SQL Injection</id>
    <updated>2026-06-21</updated>
    
  </entry>
  <entry>
    <title>NoSQL Injection</title>
    <link href="https://bluen0r.com/posts/NoSQL Injection"/>
    <id>https://bluen0r.com/posts/NoSQL Injection</id>
    <updated>2026-06-20</updated>
    
  </entry>
  <entry>
    <title>Node.js Inspector &amp; Chromium Debugger RCE</title>
    <link href="https://bluen0r.com/posts/Node.js Inspector & Chromium Debugger RCE"/>
    <id>https://bluen0r.com/posts/Node.js Inspector & Chromium Debugger RCE</id>
    <updated>2026-05-25</updated>
    
  </entry>
  <entry>
    <title>OWASP Top 10 API Security Risks – 2023</title>
    <link href="https://bluen0r.com/posts/OWASP Top 10 API Security Risks – 2023"/>
    <id>https://bluen0r.com/posts/OWASP Top 10 API Security Risks – 2023</id>
    <updated>2026-05-05</updated>
    <summary>OWASP Top 10 API Security Risks – 2023</summary>
  </entry>
  <entry>
    <title>[Portswigger] Server-side vulnerabilities - PART 2</title>
    <link href="https://bluen0r.com/posts/[Portswigger] Server-side vulnerabilities - PART 2"/>
    <id>https://bluen0r.com/posts/[Portswigger] Server-side vulnerabilities - PART 2</id>
    <updated>2026-02-12</updated>
    <summary>[Portswigger] Server-side vulnerabilities - PART 2</summary>
  </entry>
  <entry>
    <title>[Portswigger] Path traversal</title>
    <link href="https://bluen0r.com/posts/[Portswigger] Path traversal"/>
    <id>https://bluen0r.com/posts/[Portswigger] Path traversal</id>
    <updated>2026-02-11</updated>
    <summary>[Portswigger] Path traversal</summary>
  </entry>
  <entry>
    <title>[Portswigger] Server-side vulnerabilities - PART 1</title>
    <link href="https://bluen0r.com/posts/[Portswigger] Server-side vulnerabilities - PART 1"/>
    <id>https://bluen0r.com/posts/[Portswigger] Server-side vulnerabilities - PART 1</id>
    <updated>2026-02-11</updated>
    <summary>[Portswigger] Server-side vulnerabilities - PART 1</summary>
  </entry>
  <entry>
    <title>[Portswigger] API testing</title>
    <link href="https://bluen0r.com/posts/[Portswigger] API testing"/>
    <id>https://bluen0r.com/posts/[Portswigger] API testing</id>
    <updated>2026-02-10</updated>
    <summary>[Portswigger] API testing</summary>
  </entry>
  <entry>
    <title>[Portswigger] File Upload Vulnerabilities</title>
    <link href="https://bluen0r.com/posts/[Portswigger] File Upload Vulnerabilities"/>
    <id>https://bluen0r.com/posts/[Portswigger] File Upload Vulnerabilities</id>
    <updated>2026-02-09</updated>
    <summary>File Upload Vulnerabilities</summary>
  </entry>
  <entry>
    <title>Allsafe Writeup - Part 3</title>
    <link href="https://bluen0r.com/posts/Allsafe Writeup - Part 3"/>
    <id>https://bluen0r.com/posts/Allsafe Writeup - Part 3</id>
    <updated>2026-01-22</updated>
    <summary>Allsafe Writeup - Part 3</summary>
  </entry>
  <entry>
    <title>Allsafe Writeup - Part 2</title>
    <link href="https://bluen0r.com/posts/Allsafe Writeup - Part 2"/>
    <id>https://bluen0r.com/posts/Allsafe Writeup - Part 2</id>
    <updated>2026-01-21</updated>
    <summary>Allsafe Writeup - Part 2</summary>
  </entry>
  <entry>
    <title>Allsafe Writeup - Part 1</title>
    <link href="https://bluen0r.com/posts/Allsafe Writeup - Part 1"/>
    <id>https://bluen0r.com/posts/Allsafe Writeup - Part 1</id>
    <updated>2026-01-20</updated>
    <summary>Allsafe Writeup - Part 1</summary>
  </entry>
  <entry>
    <title>AndroGoat - Binary Patching</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Binary Patching"/>
    <id>https://bluen0r.com/posts/AndroGoat - Binary Patching</id>
    <updated>2026-01-19</updated>
    <summary>AndroGoat - Binary Patching</summary>
  </entry>
  <entry>
    <title>AndroGoat - Rooting &amp; Emulator Detection</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Rooting & Emulator Detection"/>
    <id>https://bluen0r.com/posts/AndroGoat - Rooting & Emulator Detection</id>
    <updated>2026-01-19</updated>
    <summary>AndroGoat - Rooting &amp; Emulator Detection</summary>
  </entry>
  <entry>
    <title>AndroGoat - HardCode Issues</title>
    <link href="https://bluen0r.com/posts/AndroGoat - HardCode Issues"/>
    <id>https://bluen0r.com/posts/AndroGoat - HardCode Issues</id>
    <updated>2026-01-18</updated>
    <summary>AndroGoat - HardCode Issues</summary>
  </entry>
  <entry>
    <title>AndroGoat - Side Channel Data Leakage</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Side Channel Data Leakage"/>
    <id>https://bluen0r.com/posts/AndroGoat - Side Channel Data Leakage</id>
    <updated>2026-01-16</updated>
    <summary>AndroGoat - Side Channel Data Leakage</summary>
  </entry>
  <entry>
    <title>AndroGoat - Input Validations</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Input Validations"/>
    <id>https://bluen0r.com/posts/AndroGoat - Input Validations</id>
    <updated>2026-01-15</updated>
    <summary>Input Validations</summary>
  </entry>
  <entry>
    <title>AndroGoat - Insecure Data Storage</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Insecure Data Storage"/>
    <id>https://bluen0r.com/posts/AndroGoat - Insecure Data Storage</id>
    <updated>2026-01-12</updated>
    <summary>Android에서 발생할 수 있는 Insecure Data Storage 취약점에 대해 살펴봅니다.</summary>
  </entry>
  <entry>
    <title>AndroGoat - Unprotected Android Components</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Unprotected Android Components"/>
    <id>https://bluen0r.com/posts/AndroGoat - Unprotected Android Components</id>
    <updated>2026-01-10</updated>
    <summary>Unprotected Android Components</summary>
  </entry>
  <entry>
    <title>AndroGoat - Network Intercepting</title>
    <link href="https://bluen0r.com/posts/AndroGoat - Network Intercepting"/>
    <id>https://bluen0r.com/posts/AndroGoat - Network Intercepting</id>
    <updated>2026-01-08</updated>
    <summary>Network Intercepting</summary>
  </entry>
  <entry>
    <title>Android - 인증서 핀닝 및 네트워크 보안 구성</title>
    <link href="https://bluen0r.com/posts/Android - 인증서 핀닝 및 네트워크 보안 구성"/>
    <id>https://bluen0r.com/posts/Android - 인증서 핀닝 및 네트워크 보안 구성</id>
    <updated>2026-01-07</updated>
    <summary>Certificate Pinning</summary>
  </entry>
  <entry>
    <title>HTB Heist Writeup</title>
    <link href="https://bluen0r.com/posts/HTB Heist Writeup"/>
    <id>https://bluen0r.com/posts/HTB Heist Writeup</id>
    <updated>2026-01-06</updated>
    <summary>HTB Heist Writeup</summary>
  </entry>
  <entry>
    <title>Mobile Hacking Lab - Strings</title>
    <link href="https://bluen0r.com/posts/Mobile Hacking Lab - Strings"/>
    <id>https://bluen0r.com/posts/Mobile Hacking Lab - Strings</id>
    <updated>2026-01-05</updated>
    <summary>Mobile Hacking Labs Strings Writeup</summary>
  </entry>
  <entry>
    <title>HTB Media Writeup</title>
    <link href="https://bluen0r.com/posts/HTB Media Writeup"/>
    <id>https://bluen0r.com/posts/HTB Media Writeup</id>
    <updated>2026-01-04</updated>
    <summary>HTB Media Writeup</summary>
  </entry>
  <entry>
    <title>Tmux 사용법</title>
    <link href="https://bluen0r.com/posts/Tmux 사용법"/>
    <id>https://bluen0r.com/posts/Tmux 사용법</id>
    <updated>2026-01-03</updated>
    <summary>Tmux 사용법</summary>
  </entry>
  <entry>
    <title>HTB Postman Writeup</title>
    <link href="https://bluen0r.com/posts/HTB Postman Writeup"/>
    <id>https://bluen0r.com/posts/HTB Postman Writeup</id>
    <updated>2026-01-02</updated>
    <summary>HTB Postman Writeup</summary>
  </entry>
  <entry>
    <title>HTB Voleur Writeup</title>
    <link href="https://bluen0r.com/posts/HTB Voleur Writeup"/>
    <id>https://bluen0r.com/posts/HTB Voleur Writeup</id>
    <updated>2026-01-02</updated>
    <summary>HTB Voleur Writeup</summary>
  </entry>
  <entry>
    <title>HTB StreamIO Writeup</title>
    <link href="https://bluen0r.com/posts/HTB StreamIO Writeup"/>
    <id>https://bluen0r.com/posts/HTB StreamIO Writeup</id>
    <updated>2026-01-01</updated>
    <summary>Writeup</summary>
  </entry>
  <entry>
    <title>Microsoft LAPS Password</title>
    <link href="https://bluen0r.com/posts/Microsoft LAPS Password"/>
    <id>https://bluen0r.com/posts/Microsoft LAPS Password</id>
    <updated>2025-12-31</updated>
    <summary>LAPS Password 읽기</summary>
  </entry>
  <entry>
    <title>CVE 2025 55182 React2Shell</title>
    <link href="https://bluen0r.com/posts/CVE-2025-55182-React2Shell"/>
    <id>https://bluen0r.com/posts/CVE-2025-55182-React2Shell</id>
    <updated>2025-12-28</updated>
    <summary>React 서버 컴포넌트(RSC)의 역직렬화 취약점 및 공격 체인</summary>
  </entry>
</feed>
