<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>romanticist.info</title><description>Personal security research notebook.</description><link>https://romanticist.info/</link><item><title>HTTP for Hacking</title><link>https://romanticist.info/posts/http-for-hacking/</link><guid isPermaLink="true">https://romanticist.info/posts/http-for-hacking/</guid><description>The HTTP spec from an attacker&apos;s lens. Where the ambiguity lives, how parsers disagree, and why that gap is always exploitable.</description><pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate><category>http</category><category>web</category><category>fundamentals</category></item><item><title>Lateral Movement via GCPW — Abusing Cloned VM Credentials</title><link>https://romanticist.info/posts/gcpw-lateral-movement/</link><guid isPermaLink="true">https://romanticist.info/posts/gcpw-lateral-movement/</guid><description>How a cloned VM image turns into a free pass across an entire GCP environment. No fancy exploit, just a credential that nobody rotated.</description><pubDate>Wed, 15 Jan 2025 00:00:00 GMT</pubDate><category>gcpw</category><category>gcp</category><category>lateral-movement</category><category>windows</category><category>lsa</category></item></channel></rss>