/ˈbar/ • nouns
Security Researcher and CTF Player with @Try4gain. Mostly into reverse engineering, forensics, web exploitation, and Linux.
Besides security shit, I enjoy playing a pixel art games and watching anime.
how i reported six shopper cves spanning authorization bypass, privilege escalation, race conditions, idor, and xss
authenticated sharp users could download unrelated laravel storage objects through the generic download endpoint
one vulnerability. multiple targets. multiple certificates.
upsolved it tho :p
a writeup of ara7ctf 2026 for/horseman
a complete write up of insanetemple for my beloved juniors