
Episode 27: Top 7 Esoteric Web Vulnerabilities
Critical Thinking - Bug Bounty Podcast
00:00
The Impact of Microservices on a Service's Path Traversal
Some of the biggest, uh, baddest vulnerabilities I've ever seen are caused by this. It's something that seems so simple and straightforward. So you're not checking for that. Be sure to check for that because it's...not quite an easy win, but it's definitely gives you a lot of leverage. And if you find one, you're likely to find lots of other unique issues as well with their own unique fixes. There used to be this thing called 401 injection where you can inject a prompt where it would pop up and they would ask the user to type in their credentials. But then that prompt was actually coming from your website, but it was on the pageyou injected
Transcript
Play full episode