Popping a shell on the Oculus developer portal
bitquark.co.uk
bitquark.co.uk
This was done after Facebook announced that Oculus is a part of their Whitehat program. OP was awarded 25000$ total for finding the vulnerabilities.
Very effective.
This is a clear and effective writeup. Congrats OP.
Can you explain? To me it just looks like a way to prove the exploit exists without revealing any actual injections.
https://www.owasp.org/index.php/Blind_SQL_Injection#Time-bas...