Back to directory
WRITEUP #893

My secret to API privesc: Tapping compromised web servers

OtherPersistencePost-exploitation
by@DanaEpp(Dana Epp)
Program
-
Published
Aug 8, 2023
Added to HackDex
Aug 21, 2023
Read Full Writeuphttps://danaepp.com/my-secret-to-api-privesc-tapping-compromised-web-servers
RELATED WRITEUPS
Injecting Java In-memory Payloads For Post-exploitation
OtherPost-exploitation
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
When Certificates Fail: A Story of Bypassed MFA in Remote Access
Other2FA / MFA bypass
SSTI in Bug Bounty Program: The Time I Played with Handlebars and Broke Stuff
OtherSSTI
Ghost In The Ppl Part 1: Byovdll
OtherUse-After-Free

Built with ❤️ by Shubham Rawat