Portswigger — Basic server-side template injection Solution What is SSTI? Server-side template injection is a vulnerability where the attacker injects malicious inpu
Read MorePhoto by Sara Bakhshi on Unsplash In this article, we will discuss the MySQL LOAD_FILE() function and the INTO OUTFILE() function and Sql Injection. MySQL provides the LOAD_FIL
Read MorePhoto by Raghavendra V. Konkathi on UnsplashIn this article, I will talk about the mysql_real_escape_string bypass defense method. It is not recommended to try to bypass securit
Read MoreCredit : PinterestSend emails on behalf of a company? Here’s how I found this vulnerability in several large companies allowing me to easily earn bounties.Hello hunters. The g
Read MorePhoto by Matt Sclarandis on Unsplash In the previous three blogs (JNDI Injection Series: RMI Vector — Fundamentals, JNDI Injection Series: RMI Vector — Dynamic Class Loadin
Read MorePhoto by Olivier Miche on Unsplash Serialization refers to a process of converting an multi-dimensional object into a flattened format which can be persisted to disk or sent ov
Read More