One Empty Header to Admin: How an Auth Bypass Breaks OpenBullet2
In this article, I explain what OpenBullet2 is used for and walk through the vulnerabilities I was able to find in it. What is OpenBullet2? OpenBullet2 is a cross-platform automation suite powered by .NET. It can send requests to a target web app and offers a wide range of tools for working with the results. The software is used for scraping and parsing data, as well as for automated penetration testing. It is also notably popular among attackers, […]