Posts by

Raymond Strandheim

Turning Cloudflare Into an SSRF Engine, Reaching What You Were Never Meant to See

[Editor note: Raymond identified a potential SSRF issue within Cloudflare infrastructure. While initially difficult to exploit due to limitations and unexpected behavior, further investigation confirmed real impact. By leveraging Cloudflare’s...
Read More about Turning Cloudflare Into an SSRF Engine, Reaching What You Were Never Meant to See

Like stealing (Cisco) ISE-cream from a kid – Weaponizing a CVE

[Editors Note: Raymond Strandheim is a principal pentester, and I asked him to share with us how he managed to weaponize a new vulnerability from Cisco into a working exploit...
Read More about Like stealing (Cisco) ISE-cream from a kid – Weaponizing a CVE