
Episode 28: Surfin' with CSRFs
Critical Thinking - Bug Bounty Podcast
00:00
Ruby on Rails: A Weird Rails Configuration
Ruby allows you to change the method of your request, even if it's sent as a get request. That adds all sorts of different levels of complexity now. Be on the lookout for any get based requests that will result in some change in the application. Don't skip over these gadgets because they're valuable and can lead to other bugs.
Transcript
Play full episode