You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
In the form of detecting shortnames for the bin folder using the bin::$index_allocation trick.
Will likely not be trying to have ffuf_shortnames actually guess the dll names using the cookieless session URL trick, because the DLLs anyone would care about would not be in the prediction model anyway. I might revisit if I can get true generative AI predictions to work.
The additional techniques described here:
https://swarm.ptsecurity.com/source-code-disclosure-in-asp-net-apps/
Could be applied to iis_shortnames/ffuf_shortnames modules
Thanks @amiremami for the suggestion.
The text was updated successfully, but these errors were encountered: