Felipe Molina
banner
felmoltor.me
Felipe Molina
@felmoltor.me
Mastodon felmoltor@defcon.social. Now with more #OSCP than the previous version. Working @SensePost.com - Orange Cyberdefense

https://blog.felipemolina.com/
Eso no se olvida nunca, lo llevo como el tatuaje de la mili de "Amor de GPO"
September 11, 2025 at 5:55 PM
Gracias! Me va a venir genial esa lista para desconectar un poco del contenido americano.
Joder, no consigo recordar ese diagrama de Venn! Pero tampoco me acuerdo de lo que comí ayer, así que...
September 11, 2025 at 1:59 PM
Yeah, probably it's my fault (my follow list), combined with the insufficient user base of other countries here, and, probably, the algorithm used in the "Discovery" tab.
September 11, 2025 at 9:36 AM
Reposted by Felipe Molina
If you're at RomHack at the end of the month, come tell me your @github.com username and I'll give you early access to the @sensepost.com tool repo for PipeTap at the con! 🙃

Below is a demo of the proxy in action.

www.youtube.com/watch?v=or8Y...
PipeTap WIP Demo
YouTube video by Leon Jacobs
www.youtube.com
September 10, 2025 at 1:41 PM
The bcheck is here, ping me if you have comments or improvement suggestions: github.com/felmoltor/BC...
BChecks/vulnerabilities-CVEd/CVE-2025-5777 - CitrixBleed 2.bcheck at main · felmoltor/BChecks
BChecks collection for Burp Suite Professional and Burp Suite DAST - felmoltor/BChecks
github.com
July 17, 2025 at 6:37 AM
Reposted by Felipe Molina
The finding was for "JWT weak HMAC secret" and it said the secret was literal "secret"

A range of emotions pushed me in various directions at once. What? no.!? yes!!!!!!! let's verify...
May 10, 2025 at 7:27 PM
Anyway, the BTC address is 17vv2jEQBbPbzfBaWMJGXJd6EPrsvjt34J and the guy is cybertraderoficial@gmail.com. In case you want to phish the guy 🎣
June 18, 2025 at 9:49 AM