Malicious Group Malicious Group
  • Home
  • Offensive Security
  • Malware Development
  • Author
Tag

Bug Bounty

Smuggling Through the Front Door... Achieving 0-Click XSS with Cache Poisoning
Offensive Security

Smuggling Through the Front Door... Achieving 0-Click XSS with Cache Poisoning

In this post, I want to walk through a new request smuggling bug chain I reported to MSRC that affected Azure Front Door. This issue was tracked as VULN-157984, confirmed by Microsoft, fixed, and awarded under the Azure bounty program.

May 30, 2026 · 10 min read
Smuggling Through the Front Door... Achieving Global Redirect Poisoning at the Edge
Offensive Security

Smuggling Through the Front Door... Achieving Global Redirect Poisoning at the Edge

In this post, I want to walk through a request smuggling bug chain I reported to MSRC that affected Azure Front Door. This issue was tracked as VULN-152925, confirmed by Microsoft, fixed, and awarded under the Azure bounty program.

May 30, 2026 · 9 min read
◆ Top 10 Web Attacks 2023 #8
From Akamai to F5 to NTLM... with love.
Offensive Security

From Akamai to F5 to NTLM... with love.

In this post, I am going to show the readers how I was able to abuse Akamai so I could abuse F5 to steal internal data including authorization and session tokens from their customers.

Oct 26, 2023 · 20 min read
Malicious Group © 2026

Malicious Group

Stay in the loop.

New research, offensive tooling, and exploit dev — straight to your inbox.