BlogProduct
Getting to “Should I?”, Instead of “Can I?”: How XBOW Finds IDORs With High Accuracy in Ambiguous Contexts
Alvaro MuñozResourceWebinars
200 Zero-Days, Zero False Positives: How XBOW Scales AI Exploitation
Alvaro Muñoz, Brendan Dolan‑GavittBlogAI Research
Tales from the Trace: How Agentic AI Merges Static and Dynamic Testing
Ray Kelly, Alvaro MuñozBlogSecurity Research
Another Byte Bites the Dust - How XBOW Turned a Blind SSRF into a File Reading Oracle
Alvaro MuñozBlogSecurity Research
Beyond the Bands: Exploiting TiTiler’s Expression Parser for Remote Code Execution
Alvaro MuñozBlogSecurity Research
Breaking the Shield: How XBOW Discovered Multiple XSS Vulnerabilities in Palo Alto’s GlobalProtect VPN
Alvaro MuñozBlogSecurity Research