|
|
|
|
|
by bostik
3527 days ago
|
|
The cardinal rule of security is: you never, ever, trust anything the client sends. This bypass is a perfect example. Although author doesn't mention which interception proxy he used, I'm 99% sure it was Burp. Replaying modified content is trivial. |
|