Michael T Babcock · @mikebabcock
164 followers · 882 posts · Server floss.social
Nullstring 🏴‍☠️ · @0x00string
216 followers · 227 posts · Server infosec.exchange

ive never used or looked at mastodon before this, but if i were auditing this, id be logging the bio url verification as an SSRF and DDoS Amplification Vector as well as making some comments on some of the shortcomings re: validation depending on how much the green check was valued.

#Consultant #codeaudit #ddos #ssrf #goofing

Last updated 3 years ago