Jan. 23, 2024, 4:40 p.m. | Krkavec Security

InfoSec Write-ups - Medium infosecwriteups.com

Welcome to this new post in which we will resolve a Challenge Neonify.

CHALLENGE DESCRIPTION

It’s time for a shiny new reveal for the first-ever text neonifier. Come test out our brand new website and make any text glow like a lo-fi neon tube!

The vulnerability exploited is Server Side Template Injection.

What is SSTI

A server-side template injection attack (SSTI) is when a threat actor exploits a template’s native syntax and injects malicious payloads into the template. The …

attack brand challenge ctf exploited glow htb injection injection attack neon new post pentesting reveal ruby server server side ssti template template injection test text tube vulnerability vulnerability exploited web website what is

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC