Latest Post

Product Security Review Methodology for Traeger Grill Hack

Jul 02, 2024 | Nick Cerne

Nick Cerne discovered and worked with Traeger Grills to disclose a vulnerability in the company’s embedded Wi-Fi Controller that allows users to connect to and control their grills remotely.

Product Security Review Methodology for Traeger Grill Hack
Power Up Your Pen Tests: Creating Burp Suite Extensions with the New Montoya API

Power Up Your Pen Tests: Creating Burp Suite Extensions with the New Montoya API

May 25, 2023 | Chris Cerne

The blog explores common use cases for Burp Suite extensions, such as handling authentication tokens and analyzing APIs, while also walking through the process of building a custom extension using the new Montoya API. The author shares an example of creating a simple extension, "BurpCage," which replaces images with Nicolas Cage photos, showcasing how developers can leverage Burp's new API for easier manipulation of HTTP messages and building powerful security tools. Additionally, the article highlights the improved extensibility and developer experience provided by the Montoya API compared to the older Burp Extender API.