Intigriti Challenge 0526 SCA Shield bypass cover image
SECURITY RESEARCH MAY 26, 2026

Intigriti Challenge 0526: SCA Shield Bypass

Target: challenge-0526.intigriti.io Author: GK Data (@gkdata) Category: Stored XSS via filter bypass Outcome: Unintended solution, confirmed by program staff TL;DR The challenge presents an authenticated SPA with a…

Read article
Password and digital identity security article cover image
SECURITY RESEARCH APR 28, 2026

The Password Isn’t the Problem. The Trust Around It Is.

By Garrett Kohlrusch | GK Data LLC Password security has been a staple of security awareness training for decades. Use long passwords. Don’t reuse them. Change them regularly.…

Read article
Ransomware and zero trust security article cover image
SECURITY RESEARCH APR 28, 2026

Ransomware Doesn’t Break In. It Walks Through the Front Door.

By Garrett Kohlrusch | GK Data LLC The word “ransomware” still conjures an image of something forcing its way in — exploiting a vulnerability, bypassing a firewall, cracking…

Read article
API security attack surface article cover image
SECURITY RESEARCH APR 28, 2026

Your API Is the Attack Surface. Does Your Security Team Know That?

By Garrett Kohlrusch | GK Data LLC Most web application security conversations start with the frontend. The login form, the input fields, the file upload handler. That’s where…

Read article
Website security assessment article cover image
SECURITY RESEARCH APR 28, 2026

Your Website Is Live. But Is It Safe?

By Garrett Kohlrusch | GK Data LLC Getting a website live is a milestone. Most business owners treat it as a finish line. It isn’t. It’s a starting…

Read article
AI voice scam call security article cover image
SECURITY RESEARCH APR 28, 2026

The Scam Call Sounded Exactly Like Your Boss. It Wasn’t.

By Garrett Kohlrusch | GK Data LLC A few years ago, “don’t click suspicious links” was most of what you needed to know. The emails were obvious. The…

Read article
Responsible use of AI in bug bounty reporting article cover image
SECURITY RESEARCH APR 28, 2026

AI Reports Are Ruining Bug Bounty — Here’s How to Use It Without Being Part of the Problem

By Garrett Kohlrusch | GK Data LLC Triage queues aren’t backed up because of a shortage of bugs. They’re backed up because of a flood of reports that…

Read article
Blind stored XSS to session hijack bug bounty article cover image
SECURITY RESEARCH APR 28, 2026

Blind Stored XSS to Session Hijack: How I Earned My First P1

Bug Bounty | Methodology Author: Garrett Kohlrusch — GK Data LLC There’s a reason blind stored XSS is underrated in the bug bounty community — it requires patience,…

Read article