Zachary Julian is a Senior Security Consultant at Bishop Fox. In this role, he specializes in web application penetration testing, source code review, and hybrid application assessments. Zach discovered CVE-2017-11617, a stored cross-site scripting vulnerability affecting a popular webmail product, and has presented at events such as (ISC)2 Phoenix, CactusCon, and Converge Detroit. He has also been quoted on topical security issues in Forbes, Vice Motherboard, The Intercept, and eSecurityPlanet.
Hot New ‘Anonymous’ Chat App Hijacks Millions of Contact Data
How I Built An XSS Worm On Atmail
2015 - Converge Detroit - Homebrew Censorship Detection by Analysis of BGP Data
From Zach Julian
Blog / Technical Research
XMPP: An Under-appreciated Attack Surface
Dec 06, 2021
Blog / Technical Research
SFDC Secure Development Cheat Sheet
Dec 11, 2019
Blog / Technical Research
Hot New ‘Anonymous’ Chat App Hijacks Millions of Contact Data
Aug 28, 2017
Blog / Technical Research
How I Built An XSS Worm On Atmail
Jun 23, 2017
Blog / Advisories
atmail 7 Stored XSS Vulnerability
Jun 23, 2017
Blog / Technical Research
In the News: A BGP Hijacking Technical Post-Mortem
Jan 18, 2017
Blog / Technical Research
An Overview of BGP Hijacking
Aug 17, 2015