{"version":1,"pages":[{"id":"-MaccNNuWvt94CVwvKil","title":"Zeyu's Infosec Blog","pathname":"/","siteSpaceId":"sitesp_8v3tU","description":"👋 This is where I write about information security!"},{"id":"vTwfiCN4bdRAIuLmoiPr","title":"DEF CON 31 CTF && Midnight Sun CTF Finals 2023","pathname":"/2023/def-con-31-ctf-and-and-midnight-sun-ctf-finals-2023","siteSpaceId":"sitesp_8v3tU","description":"My first hacker summer camp experience 🏖️","breadcrumbs":[{"label":"2023"}]},{"id":"T6vAHhbCZBHoYthhi1VF","title":"From XS-Leaks to SS-Leaks Using object","pathname":"/2023/from-xs-leaks-to-ss-leaks","siteSpaceId":"sitesp_8v3tU","description":"Using nested objects, lazy loading and responsive images to leak data","breadcrumbs":[{"label":"2023"}]},{"id":"SRnelkBDkfOb4VKMX9Ib","title":"Regular Expressions Are Hard","pathname":"/2023/regular-expressions-are-hard","siteSpaceId":"sitesp_8v3tU","description":"How to avoid common pitfalls.","breadcrumbs":[{"label":"2023"}]},{"id":"NyKJn7D7BupiAFKg7usd","title":"ReadiumJS Cloud Reader — Everybody Gets an XSS!","pathname":"/2023/readiumjs-cloud-reader-everybody-gets-an-xss","siteSpaceId":"sitesp_8v3tU","description":"Stumbling upon an XSS paradise.","breadcrumbs":[{"label":"2023"}]},{"id":"Dg71bA9PggOtYWehnV9p","title":"HTTP Request Smuggling in the Multiverse of Parsing Flaws","pathname":"/2022/http-request-smuggling-in-the-multiverse-of-parsing-flaws","siteSpaceId":"sitesp_8v3tU","description":"Nowadays, novel HTTP request smuggling techniques rely on subtle deviations from the HTTP standard. Here, I discuss some of my recent findings and novel techniques.","breadcrumbs":[{"label":"2022"}]},{"id":"icEVU1D6Te7vJe7adb4E","title":"Hosting a CTF — SEETF 2022 Organizational and Infrastructure Review","pathname":"/2022/hosting-a-ctf-seetf-2022-organizational-and-infrastructure-review","siteSpaceId":"sitesp_8v3tU","description":"My experience in hosting a CTF, and lessons learnt.","breadcrumbs":[{"label":"2022"}]}]}