I got into YC by hacking it
Summary
A personal blog details how the author discovered and exploited a vulnerability in Paxel used during YC Startup School applications, enabling forgery of scoring data due to an unvalidated HMAC. The disclosure led to a patch within hours and an invitation to Startup School, highlighting the importance of responsible vulnerability reporting and cryptographic safeguards in startup platforms.