June 28, 2024, 1:48 p.m. | OffSec

OffSec www.youtube.com

Welcome to our OffSec Live clip of Slort, a PG Practice machine: https://portal.offsec.com/labs/practice

- We demonstrated using HTTP and IP address manipulation to confirm a machine's vulnerability to Remote File Inclusion (RFI).
- We explained the process of dumping text to confirm RFI vulnerability, alongside a discussion about Local File Inclusion (LFI).
- Input sanitization was highlighted as a crucial measure to prevent RFI attacks.
- We showed how to create a reverse shell using MS Venom payloads …

address attacks confirm dumping explained file http inclusion input ip address lfi local machine manipulation measure prevent process reverse rfi text using vulnerability

Project Manager – Core Financial

@ Proofpoint | Draper, UT

Recruiting Coordinator

@ Proofpoint | Sunnyvale, CA

Director of IT Governance, Risk & Control

@ Bupa | Central London

Director

@ PwC | Bengaluru Millenia

Senior Manager

@ PwC | Mumbai Shivaji Park

Senior Manager

@ PwC | Bengaluru Millenia