# Vulnerable Security > All about application security, read about the latest vulnerabilities and learn how to become a better pentester and improve your bug bounty skills. This is the personal application-security blog of Radek (https://twitter.com/radekk), covering vulnerability research, penetration testing, bug bounty write-ups, and CTF challenges. Posts are long-form technical tutorials and case studies. ## Posts - [Solving the XSS challenge from Intigriti](https://vulnsec.com/2019/intigriti-xss-challenge/): Exploiting the race condition vulnerability - [My article was published in the Paged Out! #2](https://vulnsec.com/2019/paged-out-2-ezine/): Paged Out! is the free magazine similar to POC||GTFO - [picoCTF 2019 - JS Kiddie writeup](https://vulnsec.com/2019/picoctf-2019-js-kiddie/): The writeup for Script Kiddie 1 and the Script Kiddie 2 challenges - [How to use Burp Suite with multiple profiles in Firefox](https://vulnsec.com/2019/firefox-burp-suite-configuration/): Do not get hacked, read how to securely use Burp with Firefox - [Reverse Engineering a book cover - writeup](https://vulnsec.com/2017/reverse-engineering-a-book-cover/): The story behind how I found a hidden message inside a book cover - [SANS Holiday Hack Challenge 2016 - writeup](https://vulnsec.com/2017/SANS-Holiday-Hack-Challenge-2016/): I explain how I hacked all of the challenges - [How attackers exploit routers remotely?](https://vulnsec.com/2016/how-routers-are-exploited-remotely/): It will help you understand how attackers can hack your router - [How to detect the Sparkle Updater vulnerability](https://vulnsec.com/2016/detecting-osx-apps-rce/): Using mitmproxy and mitmdump to inspect and modify network traffic - [How I discovered a vulnerability in hundreds of Mac OS X applications](https://vulnsec.com/2016/osx-apps-vulnerabilities/): Facebook bug bounty and story behind a vulnerability ## Pages - [About](https://vulnsec.com/about/): About the author and how to get in touch. ## Feeds - [RSS feed](https://vulnsec.com/feed.xml) - [Sitemap](https://vulnsec.com/sitemap.xml)