In this walkthrough we will abuse an insecure image upload function to upload a PHP web-shell in the Remote Command Execution via Web-Shell Upload lab.
I thought it would be fun to do beginner-friendly walkthroughs of all the labs for the Apprentice track in the PortSwigger Web Security Academy, so be sure to check out all the other Walkthroughs in the playlist.
Link to Playlist: • Portswigger Web Security Academy Walkthroughs
Enjoy!
#portswigger #burpsuite #rce #owasptop10 #owasp #websecurity #webapplicationsecurity #bugbounty #hacking #hacker #cybersecurity #informationsecurity #infosec #kali #kalilinux #parrotos #pentester #pentesting #redteam #blueteam #cyber #cyberdefense