File upload testing.
Malicious PDF generatorarrow-up-right can be useful for creating malicious PDFs.
canary tokenarrow-up-right can also be used for generating PDFs which will notify if any interactions happens.
I think it's one of the best written 2 part series for testing file upload functionalities
https://blog.yeswehack.com/yeswerhackers/exploitation/file-upload-attacks-part-1/arrow-up-right
https://blog.yeswehack.com/yeswerhackers/file-upload-attacks-part-2/arrow-up-right
This user highlights that even by uploading a file of content-type video/mp2t they were able to bypass restrictions and webkit based browsers like safari for ios interpret it as html. which gives us xss.
video/mp2t
linkedin: https://www.linkedin.com/feed/update/urn:li:activity:7358722803153453056/arrow-up-right
Last updated 6 months ago