Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

Real-world scenario [10]: (RCE via Cart) #CTF #bugbounty #bugbountytips #bugbountytip

18,778 Aufrufe • vor 8 Tagen •via X (Twitter)

9 Kommentare

Profilbild von zack0x01
zack0x01vor 7 Tagen

this is so cool , but intrested to know if this ctf is build on real world scenario ?

Profilbild von 𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻
𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻vor 7 Tagen

Sure with the same specifications and standards it was there and Bounty paid $ 2050

Profilbild von im Nhyy
im Nhyyvor 7 Tagen

To clarify, the scenario before the RCE is a Deserialization vulnerability The main idea is that the website restores a stored variable like light/dark mode During this restoration process in memory a malicious payload manipulates the backend Magic Methods triggering RCE

Profilbild von Piyush Khosla
Piyush Khoslavor 7 Tagen

Any tech details on it how do you get that there is also file parameter which was accepting and so on.

Profilbild von 𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻
𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻vor 7 Tagen

Dm

Profilbild von chwrld
chwrldvor 6 Tagen

Any write-up?

Profilbild von Younis Jabr
Younis Jabrvor 7 Tagen

ما تنزلهم يوتيوب

Profilbild von 𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻
𝗗𝘀𝗼𝗸𝗲𝗩🧑‍💻vor 7 Tagen

دي بلات فورم بتجهز لسه يا كوتش كلها سينريوهات real world وفيها تيم مصري هندي ..هتجهز قريب إن شاء الله

Profilbild von Younis Jabr
Younis Jabrvor 7 Tagen

شكراً يا معلم وربي أساطير

Ähnliche Videos