Filling in the Blanks: Exploiting Null Byte Buffer Overflow for a $40,000 Bounty
samcurry.net | blog | #bug-bounty | #fuzzing | #web-security | #null-byte | #buffer-overflow | #memory-disclosure
Summary
A curious fuzzing find turned into a $40,000 bounty: trailing null bytes and other removable characters in a registration form triggered memory disclosure—a rare null-byte buffer overflow case.
- Published
- Collected
Skip to content