Include Security’s Post

View organization page for Include Security, graphic

1,242 followers

View profile for Erik Cabetas, graphic

Offensive Security leader @Include Security; obsessed w/ Product Security and AppSec

Hey Linkedin crew, we just published a new research blog post on some offensive Ruby exploit techniques! It's always exciting to find a deserialization functions accepting user input, but what’s your plan if well-known gadget chains aren’t an option for exploitation? In this post, our consulting team explores the process of building a custom gadget chain to exploit deserialization vulnerabilities in Ruby. 😁 https://lnkd.in/ejRnpJsG

Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog

Discovering Deserialization Gadget Chains in Rubyland - Include Security Research Blog

http://blog.includesecurity.com

To view or add a comment, sign in

Explore topics