3 ms·
The normal file doesn't look that normal
by andreareina 1y ago
The normal file doesn't look that normal
- o11c 1y agoKeep in mind that the stated use is cache-poisoning of automated scanners, not fooling humans.
- slow_typist 1y agoHumans have to put the so called php-file on the server intentionally for any subsequent attack to work. But it is a binary file.
- h33t-l4x0r 1y agoI imagine it's supposed to get onto the server by an exploited vulnerable image upload plugin
- slow_typist 1y agoMaybe I don’t understand the scenario fully, but under your assumption there is no need to inject the malicious webshell later.