<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Ayoub0Sec</title><description>Cybersecurity tutorials, labs, tools, and research by Ayoub El Gharniti. Deep dives into offensive security, infrastructure hardening, and real-world pentesting.</description><link>https://ayoub0sec.online/</link><item><title>Cookie Security: SameSite, HttpOnly, Secure, and __Host- Prefix</title><link>https://ayoub0sec.online/blog/cookie-security.md/</link><guid isPermaLink="true">https://ayoub0sec.online/blog/cookie-security.md/</guid><description>A practical guide to session cookie security attributes. What each flag does, how to test them, and what happens when they&apos;re missing.</description><pubDate>Sat, 20 Apr 2024 00:00:00 GMT</pubDate></item><item><title>Nomad TLS Configuration: Securing Cluster Communication</title><link>https://ayoub0sec.online/blog/nomad-tls-setup.md/</link><guid isPermaLink="true">https://ayoub0sec.online/blog/nomad-tls-setup.md/</guid><description>How to generate TLS certificates for HashiCorp Nomad servers and clients, configure mTLS, and fix common x509 errors.</description><pubDate>Sat, 01 Jun 2024 00:00:00 GMT</pubDate></item><item><title>Subdomain Takeover: Detection, Exploitation &amp; Prevention</title><link>https://ayoub0sec.online/blog/subdomain-takeover.md/</link><guid isPermaLink="true">https://ayoub0sec.online/blog/subdomain-takeover.md/</guid><description>How dangling DNS records lead to subdomain takeovers, how to find them at scale, and how to prevent them in your own infrastructure.</description><pubDate>Wed, 15 May 2024 00:00:00 GMT</pubDate></item></channel></rss>