Рет қаралды 4,765
Web Hacking 101: leanpub.com/we...
Original write-up: 4lemon.ru/2017-...
In the first Web Hacking Pro Tips Deep Dive, I sit down with Jason Haddix from Bugcrowd to discuss a Facebook RCE discovered in October 2016 by Andrey Leonov, 4lemon. We walk through what Imagemagick and Imagetragick are, the likely methodology used to find this bug, potential problems encountered finding and exploiting it and discuss key takeaways.