<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://blog.nedtechie.com/posts/master_linux_permissions_and_file_types_while_your_coffee_brews/</loc>
<lastmod>2026-04-22T00:07:18+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/from-devops-to-devsecops-why-i-started-breaking-things/</loc>
<lastmod>2026-04-22T03:18:49+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/5000-attack-vectors-later/</loc>
<lastmod>2026-04-22T03:37:36+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/cognito-s3-bucket-takeover-two-curl-commands/</loc>
<lastmod>2026-04-22T01:35:50+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/the-cors-rabbit-hole-i-didnt-want-to-go-down/</loc>
<lastmod>2026-04-22T03:29:46+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/when-your-internal-fields-arent-internal/</loc>
<lastmod>2026-04-22T03:33:33+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/xss-payloads-in-my-support-tickets/</loc>
<lastmod>2026-04-22T03:29:46+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/3am-and-im-creating-thousand-invoices/</loc>
<lastmod>2026-04-22T03:29:46+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/the-refresh-token-that-wouldnt-die/</loc>
<lastmod>2026-04-22T03:37:36+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/i-can-read-everyones-invoices/</loc>
<lastmod>2026-04-22T03:37:36+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/the-load-balancer-that-trusted-everyone/</loc>
<lastmod>2026-04-22T03:33:33+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/what-dryrun-taught-me-about-confidence/</loc>
<lastmod>2026-04-22T03:18:49+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/posts/breaking-my-own-infrastructure-what-i-found/</loc>
<lastmod>2026-04-22T03:37:36+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/</loc>
<lastmod>2026-04-22T03:37:44+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/</loc>
<lastmod>2026-04-22T03:37:44+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/archives/</loc>
<lastmod>2026-04-22T03:37:44+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/about/</loc>
<lastmod>2026-04-22T03:37:44+07:00</lastmod>
</url>
<url>
<loc>https://blog.nedtechie.com/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/books/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/career-change/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/devsecops/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/mindset-shift/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/paranoia/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/fuzzing/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/input-validation/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/attack-vectors/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/creative-testing/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/cognito/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/s3/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/pentesting/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/iam/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/cloud-security/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/cors/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/preflight/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/credential-theft/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/configuration/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/mass-assignment/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/internal-fields/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/user-profile/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/soft-delete/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/xss/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/input-sanitization/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/support-system/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/ticketing/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/race-condition/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/unauthenticated-api/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/business-logic/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/jwt/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/refresh-token/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/session-management/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/authentication/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/token-reuse/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/bola/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/idor/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/auto-login/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/finance/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/data-exposure/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/typeorm/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/rate-limiting/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/x-forwarded-for/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/trust-proxy/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/alb/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/cloudfront/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/brute-force/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/aws-cli/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/dryrun/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/false-positives/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/testing-methodology/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/retrospective/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/aws/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/tags/api-security/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/book/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/linux/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/devops/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/devsecops/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/career/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/security/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/api/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/pentesting/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/aws/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/cors/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/mass-assignment/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/xss/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/authentication/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/bola/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/infrastructure/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/lessons/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/categories/retrospective/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/page2/</loc>
</url>
<url>
<loc>https://blog.nedtechie.com/assets/media/Nedim.pdf</loc>
<lastmod>2026-04-20T23:30:58+07:00</lastmod>
</url>
</urlset>
