Drvirus1911

Local File Inclusion Writeups

May 17th, 2020
906
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.08 KB | None | 0 0
  1. http://blog.jr0ch17.com/2018/No-RCE-then-SSH-to-the-box/
  2. http://hassankhanyusufzai.com/RFI_LFI_writeup/
  3. http://karmainsecurity.com/hacking-magento-ecommerce-for-fun-and-17000-usd
  4. https://bitquark.co.uk/blog/2013/12/30/google_sites_a_tale_of_five_vulnerabilities
  5. https://blog.scrt.ch/2018/08/24/remote-code-execution-on-a-facebook-server/
  6. https://blog.scrt.ch/2019/01/24/magento-rce-local-file-read-with-low-privilege-admin-rights/
  7. https://blog.shashank.co/2013/10/lfi-in-nokia-maps.html
  8. https://buer.haus/2017/06/29/escalating-xss-in-phantomjs-image-rendering-to-ssrflocal-file-read/
  9. https://cyberzombie.in/my-first-lfi/
  10. https://josipfranjkovic.blogspot.com/2014/12/reading-local-files-from-facebooks.html
  11. https://medium.com/@NathOnSecurity/hacking-the-nhs-for-fun-and-no-profit-90931029dcb4
  12. https://medium.com/@_bl4de/most-common-security-vulnerabilities-in-npm-static-server-modules-ef593c59d0ba
  13. https://medium.com/@armaanpathan/chain-the-bugs-to-pwn-an-organisation-lfi-unrestricted-file-upload-remote-code-execution-93dfa78ecce
  14. https://medium.com/@jonathanbouman/local-file-inclusion-at-ikea-com-e695ed64d82f
  15. https://medium.com/@logicbomb_1/chain-of-hacks-leading-to-database-compromise-b2bc2b883915
  16. https://medium.com/@logicbomb_1/the-journey-of-web-cache-firewall-bypass-to-ssrf-to-aws-credentials-compromise-b250fb40af82
  17. https://medium.com/@mantissts/arbitrary-file-read-in-one-of-the-largest-crms-658caa2f05d2
  18. https://medium.com/@mastomi/antihack-me-multiple-vulnerabilities-215ec0d6f064
  19. https://medium.com/@maxon3/lfi-to-command-execution-deutche-telekom-bug-bounty-6fe0de7df7a6
  20. https://medium.com/@tungpun/client-not-client-aa448cfdedd2
  21. https://medium.com/@vulnerabilitylabs/bug-bounty-lfi-at-google-com-3c2e17d8c912
  22. https://medium.com/@zain.sabahat/exploiting-ssrf-like-a-boss-c090dc63d326
  23. https://medium.com/bugbountywriteup/bugbounty-journey-from-lfi-to-rce-how-a69afe5a0899
  24. https://medium.com/bugbountywriteup/how-we-got-lfi-in-apache-drill-recon-like-a-boss-6f739a79d87d
  25. https://nirmaldahal.com.np/lfi-to-10-server-pwn/?__cf_chl_jschl_tk__=931a2e1f5b600f3b2d253c98f350a7578662d3fa-1589695854-0-AetiVyjDTCFyyA1EZmRutYfU6kTO7JkS_6z2_PLwHzSDSCum0cquduC3n9hR8LMikISZrR9SlyqkY4k1aBpD8B3ywr20QVhkQ7lJrW97hTipRmEr5iilgRow5zoutUoJcII7UR0DafE69tXIXkfVETaT_BtbnoaovIATbV1r0p-iNjBbnOd1N2XidSzi2S-sEWLiHqcNUw6q7etR9aNqe1A26wVIj5Cm431IkrBdxSVNvORilqml3BT5506nhcTyNNgp5xn_XDiRm7dGWf_Bp4kqJ_WbV-ArkBwr85nomfU7
  26. https://offensi.com/2019/01/31/lfi-in-apigee-portals/
  27. https://omespino.com/write-up-google-bug-bounty-lfi-on-production-servers-in-redacted-google-com-13337-usd/
  28. https://paper.seebug.org/737/
  29. https://spenkk.github.io/bugbounty/Local-File-Inclusion/
  30. https://wehitharder.com/writes/how-i-found-and-reporting-vulnerabilities-to-antihack-me-by-tomi/
  31. https://www.noob.ninja/2017/11/local-file-read-via-xss-in-dynamically.html
  32. https://www.rcesecurity.com/2014/04/magix-bug-bounty-magix-com-rce-sqli-and-xara-com-lfi-xss/
  33. https://www.rcesecurity.com/2017/08/from-lfi-to-rce-via-php-sessions/
  34. https://www.updatelap.com/2019/05/local-file-inclusion-in-peeringgooglecom.html
  35. https://www.vesiluoma.com/abusing-mysql-clients/
Add Comment
Please, Sign In to add comment