How i accidently found a server side template injection

2 days ago 13
BOOK THIS SPACE FOR AD
ARTICLE AD

Insbat Arshad

So without wasting your time lets start the story.

I was trying to search for a free resource of cybersecurity course after some research i got a website, suppose target.com i was signed up for course information

As you know a hacker can never use a website as normal person after he involved in this field, so i injected SSTI payloads in name field first name {{7*7}} and last name [8*8] and signed up with my email and was using a website normally for my course and was trying to register for enrollment then after registration i needed to open my email for some information when i went to my inbox and open the email and shocked first name was 49 and last name was same as it is [8*8]

you can also feel the happiness of this stage, then imediatly i went to check for targets bug bounty program and yes they have a VDP program on hackerone then wrote a report and reported them, and waiting for there response…

Always stay blessed, respect your parents, respect females as like your sisters, must complete your five prayers on every day dont waste your time with non professional people, always makes good friends otherwise stay alone

If you need any information or any help for your life goals or any other topic then you can contact me without any hasitation.

Thank you very much for giving your precious time ..

Read Entire Article