<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>blog.evan.lat</title><description>Vulnerabilities, initial access, and notes from the field.</description><link>https://blog.evan.lat/</link><item><title>cisco catalyst sdwan auth heap buffer overflow (CSCwu48719)</title><link>https://blog.evan.lat/posts/catalyst/</link><guid isPermaLink="true">https://blog.evan.lat/posts/catalyst/</guid><pubDate>Fri, 10 Jul 2026 11:50:14 GMT</pubDate></item><item><title>CVE-2026-58451</title><link>https://blog.evan.lat/posts/CVE-2026-58451/</link><guid isPermaLink="true">https://blog.evan.lat/posts/CVE-2026-58451/</guid><pubDate>Wed, 01 Jul 2026 03:19:28 GMT</pubDate></item><item><title>CVE-2026-53582</title><link>https://blog.evan.lat/posts/opnsense/</link><guid isPermaLink="true">https://blog.evan.lat/posts/opnsense/</guid><pubDate>Sun, 31 May 2026 15:50:14 GMT</pubDate></item><item><title>cisco asa xp but it isnt actually</title><link>https://blog.evan.lat/posts/momentum/</link><guid isPermaLink="true">https://blog.evan.lat/posts/momentum/</guid><pubDate>Tue, 07 Apr 2026 06:35:07 GMT</pubDate></item><item><title>the great art of enterprise fail</title><link>https://blog.evan.lat/posts/corp/</link><guid isPermaLink="true">https://blog.evan.lat/posts/corp/</guid><pubDate>Thu, 26 Mar 2026 14:50:14 GMT</pubDate></item><item><title>CVE-2026-25857</title><link>https://blog.evan.lat/posts/cve-2026-25857/</link><guid isPermaLink="true">https://blog.evan.lat/posts/cve-2026-25857/</guid><pubDate>Sat, 07 Feb 2026 03:19:28 GMT</pubDate></item><item><title>fire the firmware devs bro</title><link>https://blog.evan.lat/posts/kys/</link><guid isPermaLink="true">https://blog.evan.lat/posts/kys/</guid><pubDate>Mon, 12 Jan 2026 13:16:56 GMT</pubDate></item><item><title>initial access 103</title><link>https://blog.evan.lat/posts/sixseven/</link><guid isPermaLink="true">https://blog.evan.lat/posts/sixseven/</guid><pubDate>Mon, 08 Dec 2025 15:07:05 GMT</pubDate></item><item><title>disclosure #2 - email takeover</title><link>https://blog.evan.lat/posts/disc/</link><guid isPermaLink="true">https://blog.evan.lat/posts/disc/</guid><pubDate>Mon, 03 Nov 2025 03:26:43 GMT</pubDate></item><item><title>msrc disc. (outlook exploit)</title><link>https://blog.evan.lat/posts/ol/</link><guid isPermaLink="true">https://blog.evan.lat/posts/ol/</guid><pubDate>Wed, 29 Oct 2025 13:43:33 GMT</pubDate></item><item><title>breach a payment processor with these 3 vulns</title><link>https://blog.evan.lat/posts/pay/</link><guid isPermaLink="true">https://blog.evan.lat/posts/pay/</guid><pubDate>Wed, 01 Oct 2025 03:50:08 GMT</pubDate></item><item><title>initial access 102 - infil and pivoting</title><link>https://blog.evan.lat/posts/ia-102/</link><guid isPermaLink="true">https://blog.evan.lat/posts/ia-102/</guid><pubDate>Tue, 01 Jul 2025 03:15:01 GMT</pubDate></item></channel></rss>