Post Auw4N0bdpX9SECq7Ga by [email protected] | |
More posts by [email protected] | |
Post #AuuPZFkd3aSXOans0m by [email protected] | |
0 likes, 1 repeats | |
OMG just realised that SVG files can execute code 😬😖😱 *screms in cyber… | |
Post #AuuPfEjjk1BfzGEtd2 by [email protected] | |
0 likes, 0 repeats | |
@kcarruthers fucking spectacular. | |
Post #AuuPfEq7MII8J3DzZg by [email protected] | |
0 likes, 1 repeats | |
@Viss it is like the past comes back to haunt us | |
Post #AuuPiKbuML0Z4a3M5A by [email protected] | |
0 likes, 1 repeats | |
@Viss on the bright side it looks like it just stuff like html or javascript | |
Post #AuuR7B92myamuSxqDY by [email protected] | |
0 likes, 0 repeats | |
@kcarruthers so like, stealing cookies, ssrf, accessing internal only resources… | |
Post #AuuR7BF4QZPfD9mebw by [email protected] | |
0 likes, 1 repeats | |
@Viss so many interesting possiblities | |
Post #AuugJpKqgcRALTyVg8 by [email protected] | |
0 likes, 1 repeats | |
@kcarruthers Unfiltered SVG + type confusion = stored XSS (one of my fav, tbh) | |
Post #Auw4N0bdpX9SECq7Ga by [email protected] | |
0 likes, 0 repeats | |
@kcarruthers - so can Font files. https://fuglede.github.io/llama.ttf/ | |
Post #Auw4N0jRMXOEcOULQG by [email protected] | |
0 likes, 1 repeats | |
@clark so much fun |