I’ve actually seen a very similar approach from before – rather than fixing the issue, they blacklisted a string from my proof of concept. Minimal change and the exploit was working again.


· · Web · 0 · 0 · 0
Sign in to participate in the conversation
Infosec Exchange

A Mastodon instance for info/cyber security-minded people.