The other day we got an order for black-box pentests from a country-wide organization. The organization serves tens or even hundreds of services across the country and their users are counted in millions. To be honest, looking from the impact perspective this is one the biggest hacks we’ve done so far. But this is not the main reason I decided to publish this write-up..

The real reason is that the hack itself is, in my opinion, really interesting! This is the type of hack you can be proud of. It took an incredible amount of time and many different approaches…

Blazej Adamczyk

Security researcher focused on software and networking. Well oriented in operating systems, web applications, networking, cryptography and virtualization.

