Ldap

Finding LDAP Injection in Snipe-IT
Finding LDAP Injection in …

Overview

Structured security code review is a practical and effective approach to finding real vulnerabilities. In this post I walk through how I applied a systematic review methodology to Snipe-IT, a popular open-source IT asset management platform, and how that approach led me directly to a …

OPNsense: LDAP Injection via Unsanitized Login Username
OPNsense: LDAP Injection …

OPNsense is a popular open-source firewall and routing platform built on FreeBSD. It handles network perimeter security for a huge range of environments, from home labs to enterprise edge routers, and it supports LDAP and Active Directory integration for centralized authentication. That makes the …