hofill > ./blog Crypto enthusiast.

Web

web shark

>>> Mako template injection

web shark-v2

>>> SSTI using Mako and bypassing blacklist