/blog
My thoughts and tutorials

#prompt injection#web
2025-02-18
Stealing notion workspace with prompt injection in Notion AI
How i exploited prompt injection in Notion AI to steal private data

#XSS#RCE
2025-02-18
Pwning the Parser: Turning Markdown XSS into Electron RCE
How i got full code execution on a system by exploiting markdownify desktop app