Back to directory
WRITEUP #1189

Rendezvous with a Chatbot: Chaining Contextual Risk Vulnerabilities

OtherChatbotWebsocketsCross-Site WebSocket Hijacking (CSWH)Captcha bypass
by@bugasur(Abeer Banerjee)
Program
-
Published
May 11, 2023
Added to HackDex
May 15, 2023
Read Full Writeuphttps://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/rendezvous-with-a-chatbot-chaining-contextual-risk-vulnerabilities/
RELATED WRITEUPS
CSWSH Meets LLM Chatbots
AI / LLMLLM
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
When Certificates Fail: A Story of Bypassed MFA in Remote Access
Other2FA / MFA bypass
Unmasking Harmful Content in a Medical Chatbot: A Red Team Perspective
AI / LLMAI
SSTI in Bug Bounty Program: The Time I Played with Handlebars and Broke Stuff
OtherSSTI

Built with ❤️ by Shubham Rawat