<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>ethersec</title><description>Siber güvenlik öğrenen, dijital tehditler, güvenlik kavramları ve gerçek dünya vakaları üzerinden yolculuğunu belgeleyen biri.</description><link>https://ethersec.pages.dev/</link><language>tr-tr</language><item><title>Streaming Platformunda Geolocation Bypass Denemesi</title><link>https://ethersec.pages.dev/tr/blog/streaming-geolocation-bypass/</link><guid isPermaLink="true">https://ethersec.pages.dev/tr/blog/streaming-geolocation-bypass/</guid><description>Bir streaming platformunda coğrafi kısıtlamayı X-Forwarded-For başlığıyla nasıl aştığımı anlatan eğlenceli bir deneme.</description><pubDate>Sat, 18 Apr 2026 00:00:00 GMT</pubDate><category>web</category><category>burpsuite</category><category>geolocation</category><category>bypass</category></item><item><title>PicoCTF 2026 Write-up: General Skills Kategorisinde 6 Soru</title><link>https://ethersec.pages.dev/tr/blog/picoctf-2026-general-skills/</link><guid isPermaLink="true">https://ethersec.pages.dev/tr/blog/picoctf-2026-general-skills/</guid><description>Bytemancy serisinden Failure Failure ve Absolute Nano’ya — picoCTF 2026 General Skills çözümleri.</description><pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate><category>picoctf</category><category>ctf</category><category>writeup</category><category>pwntools</category><category>privilege-escalation</category></item><item><title>picoCTF 2026 — Web Exploitation Write-Up</title><link>https://ethersec.pages.dev/tr/blog/picoctf-2026-web-exploitation/</link><guid isPermaLink="true">https://ethersec.pages.dev/tr/blog/picoctf-2026-web-exploitation/</guid><description>Secret Box, No FA ve ORDER ORDER — picoCTF 2026 web exploitation sorularından üçünün detaylı çözümü.</description><pubDate>Fri, 20 Mar 2026 00:00:00 GMT</pubDate><category>picoctf</category><category>ctf</category><category>writeup</category><category>web</category><category>sql-injection</category><category>2fa</category></item><item><title>Kendi Laboratuvarımda Zafiyet Analizi: Nessus ve Metasploitable</title><link>https://ethersec.pages.dev/tr/blog/nessus-ve-metasploitable-zafiyet-analizi/</link><guid isPermaLink="true">https://ethersec.pages.dev/tr/blog/nessus-ve-metasploitable-zafiyet-analizi/</guid><description>İzole bir laboratuvar ağında Nessus ile Metasploitable taraması yaptım; çıkan bulguları bir analist gözüyle değerlendirdim.</description><pubDate>Sat, 28 Feb 2026 00:00:00 GMT</pubDate><category>nessus</category><category>vulnerability-management</category><category>metasploitable</category><category>lab</category></item><item><title>React2Shell (CVE-2025-55182): 10 Puanlık Kritik Zafiyeti Nasıl İnceledim?</title><link>https://ethersec.pages.dev/tr/blog/react2shell-cve-2025-55182/</link><guid isPermaLink="true">https://ethersec.pages.dev/tr/blog/react2shell-cve-2025-55182/</guid><description>CVSS 10.0 skorlu React2Shell zafiyetini TryHackMe odasında pratik olarak sömürdüm; deserialization mantığını anlattım.</description><pubDate>Wed, 10 Dec 2025 00:00:00 GMT</pubDate><category>cve</category><category>rce</category><category>react</category><category>deserialization</category><category>tryhackme</category></item></channel></rss>