https://www.wildwesthackinfest.com
00:00 - Introduction For Rook
05:07 - Ok, but why?
07:14 - Layers of The WWW
11:42 - Attack!
18:20 - Search and Execute
23:29 - Git the Code!
25:26 - LFI the Code!
28:51 - No Exec? No Problem!
30:14 - Log Pollution to Execution
34:15 - The Takeaway
37:48 - Second Order XSS Attacking Admin Applications
41:46 - Post Show Banter
From bug bounties to network pen tests, web applications are often the perimeter in many enterprise environments. Understanding how these applications work and interact with their backend is instrumental in being successful in your assessments. In this talk, I'll walk through a real exploit path (applications, names, and code changed to protect responsible disclosure) used in a personal bug bounty report, and more than one network penetration tests. We'll chain multiple vulnerabilities together, do quick win code analysis, and even use Local File Include (LFI) for more than just dumping /etc/passwd.
----
From bug bounties to network pen tests, web applications are often the perimeter in many enterprise environments. Understanding how these applications work and interact with their backend is instrumental in being successful in your assessments. In this talk, I'll walk through a real exploit path (applications, names, and code changed to protect responsible disclosure) used in a personal bug bounty report, and more than one network penetration tests. We'll chain multiple vulnerabilities together, do quick win code analysis, and even use Local File Include (LFI) for more than just dumping /etc/passwd.
Derek is an industry veteran with over 15 years of experience spanning systems administration and engineering, web development, security engineering, and offensive security. In the office, he devotes his time to building and running an internal offensive security practice. Out of the office, he splits time between family, martial arts, teaching for SANS, and building his own consulting practice, Corvid Security. A NetWars Tournament of Champions winner and NolaCon black badge holder, he has taken a step back from CTF competition to focus on lifting others up to create a more diverse and inclusive community. Derek holds several security certifications, including GCIA, GNFA, GCIH, GWAPT, GXPN, and OSCP.