SproutLogix Metadata Aggregator CTF: SSRF via Loopback Bypass
9 min read
LevelUpCTF SproutLogix Heritage Metadata Aggregator SSRF writeup: bypass a localhost/127.0.0.1 string blocklist with a decimal-encoded loopback address (http://2130706433:5000/) to reach the internal heritage-vault endpoint.
Read more...
Mark Lacore