Execute commands by sending JSON? Learn how unsafe deserialization vulnerabilities work in Ruby projects
📝
内容提要
Can an attacker execute arbitrary commands on a remote server just by sending JSON? Yes, if the running code contains unsafe deserialization vulnerabilities. But how is that possible? In this blog...
➡️