• Home
  • Contact
  • GitHub
  • LinkedIn
  • Twitter

Ryan Wendel

My random musings on tech and whatever…

Month: September 2019

Enumerating Applications with Aquatone and Burp Suite

Application Enumeration Tips using Aquatone and Burp Suite

Ryan Wendel / September 27, 2019

I was recently introduced to a really cool domain flyover tool named Aquatone written by Michael Henriksen. In the past, I had used another really cool tool known as EyeWitness to perform similar tasks. In short, both of these tools screenshot web application resources (among other things)…

Continue Reading→

Using Burp's Cookie Jar for Java Web Tokens

Using Burp Suite’s Cookie Jar for JSON Web Tokens

Ryan Wendel / September 7, 2019

I was going over an application I wrote prepping for my upcoming class and realized the shortcoming’s of Burp’s default session handling mechanisms. Not to knock Burp, but working with a Single Page Application (SPA) that makes calls to several APIs using a JSON Web Token (JWT)…

Continue Reading→

About

Ryan Wendel

Ryan Wendel currently operates as an AWS Solutions Architect for Trek10, an AWS Premier Consulting Partner. His primary interests and areas of technical expertise encompass AWS cloud architecture and web application security. Outside of his interests in technology, Ryan enjoys taking time off to snowboard, bike, lift weights, climb, hike, and enjoy the many delicious craft brews the Denver, CO area has to offer.

Ryan Wendel - GitHub Ryan Wendel - LinkedIn Ryan Wendel - Twitter

Recent Posts

  • Using CodePipeline again with Elastic Container Service
  • Using CodePipeline, CodeDeploy, and CodeCommit with an EC2 AutoScaling Group
  • Jumping into React, Node, MongoDB, and AWS S3
  • DNS Exfiltration using SQLMap in a Microsoft SQL Environment
  • DNS Exfiltration through Blind SQL Injection in a MS-SQL Environment Using Burp Collaborator

Categories

  • AWS
  • Bash
  • Burp Suite
  • Cloud
  • JavaScript
  • Lab
  • PHP
  • Python
  • Research
  • Scripts
  • SQL Injection
  • Tips
  • Uncategorized
  • WebApp
  • Writeups

Archives

  • March 2021
  • February 2021
  • February 2020
  • September 2019
  • May 2019
  • April 2019
  • October 2018
  • September 2018
  • April 2018
  • November 2017
  • October 2017
  • August 2017
  • July 2017

Tags

Amap AWS Bash Burp CentOS Chef Cloud Credspray Enumeration gobuster JavaScript Lab Metasploit MongoDB Nessus Netpen Nmap Node PHP Python React Research Scanning Scripts Shells SMB SQL Injection Tips WebApp Workflow
Copyright RyanWendel.com © All rights reserved.
Blog Way by ProDesigns