Skip to content

adamstorek/cinsects2022-hireme-pickle-exploit

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

9 Commits
 
 
 
 

Repository files navigation

Cinsects2022 hireme django web app pickle exploit

This is an exploit for the Cinsects 2022 Attack/Defense CTF, leveraging an RCE vulnerability in hireme django web app:

  • fixed known HMAC secret key
  • unpickling user-supplied input

About

Cinsects 2022 hireme django pickle exploit

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages