From input to shell: a valid URL with a command in its shadow
A connectivity test panel in a bug bounty program took an SSH host, shrugged off thirty minutes of SSRF testing, and never expected a semicolon.
Ethical hacker and bug bounty hunter, who happens to be an electronics engineer. I am fascinated about finding security vulnerabilities.
A connectivity test panel in a bug bounty program took an SSH host, shrugged off thirty minutes of SSRF testing, and never expected a semicolon.
This article explains how I found an XML External Entity (XXE) injection through a specially crafted PDF file.