IT-Security Researcher | OSCP | OSWP | PNPT | Creator of Perlite

Joined September 2021
10 Photos and videos
New Writeup: Malware deep dive into Zero2Automated Cruloader, a 3-stage malware using RC4 XOR encryption, API hashing via custom ROT13/CRC32, and process hollowing into svchost.exe. #MalwareAnalysis #ReverseEngineering notes.secure77.de/WriteUps/Z…
1
4
168
Don't want to implement your own authentication and access control in your app? You don't have to, I've published a new blog post that deals with the topic of authentication and file access control with authentik for Perlite: secure77.de/perlite-access-c…
1
73
#StrelaStealer: My honeypot is being hit with my disclosed login details. Over the past 72 hours, I have logged more than 89000 login attempts from 2500 different IP addresses. They fetching metadata from emails newer then 07.02.2026 secure77.de/strelastealer-20…
1
72
sec77 retweeted
Ready for takeoff? 🚀 Prepare for the brand-new pieces of content coming to the #HackTheBox platforms this week! 🔴 Atlas, a migrated #Vulnlab Machine created by xct 🔴 Bruno, a migrated #Vulnlab Machine created by xct 🔵 SillyEli, a Sherlock created by GuyEldad95 & Roey 🔴 Global Hyperlink Zone, a Challenge created by DCryp7 🔴 Conversor, an HTB Seasons Machine created by FisMatHack Get started now on #HTB Labs and Enterprise Platform: okt.to/5NuP2w #Cybersecurity #InformationSecurity #NewRelease #Hacking #CyberSkills
2
9
87
6,659
sec77 retweeted
17 Sep 2025
I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-global…
138
903
3,186
475,268
sec77 retweeted
19 Sep 2024
new blogpost time!! this one's a fun writeup on a vulnerability chain i found across multiple google services that earned me a $4133.70 bounty lots of fun css as usual! i had to recreate a bunch of drive/docs/gmail/youtube UIs c: have fun! lyra.horse/blog/2024/09/usin…
19
166
745
70,701
sec77 retweeted
23
277
2,804
112,821
sec77 retweeted
First day at Crowdstrike, pushed a little update and taking the afternoon off ✌️
2,734
31,026
398,047
46,927,158
sec77 retweeted
18 Jun 2024
#x33fcon hacker pirate ship 2024. Ahoy sea wolves! It was a great pleasure to fish and hunt with you :)
1
7
39
8,043
sec77 retweeted
13 Jun 2024
Best crowd ever 🤩⛵️🏴‍☠️
4
8
74
13,276
sec77 retweeted
13 Jun 2024
On our way back to Gdynia #x33fcon #hacker #pirates
4
16
1,699
12 Jun 2024
On the way to @x33fcon 😀👻
12
360
sec77 retweeted
Excited to announce our new blog post on new event handlers to trigger XSS! Huge thanks to @bojanz for making this happen and to @PortSwiggerRes for their awesome XSS cheat sheet, now featuring these techniques. infigo.hr/en/insights/46/int…

1
7
19
3,354