RSSAmplifier

Blog

Adam Logue

Security Research with Responsible Disclosure

adamlogue.comRSS feed ↗9 posts

Latest posts

Microsoft 365 Copilot – Arbitrary Data Exfiltration Via Mermaid Diagrams

tl;dr When Microsoft 365 Copilot (M365 Copilot) was asked to summarize a specially crafted Microsoft Office document, an indirect prompt injection payload triggered the execution of arbitrary instructions to fetch sensitive tenant data, such as recent emails and hex encode...

Collabfiltrator 4.0.1 Released with SQLi Exfiltration Support [Burp Plugin][Updated]

tl;dr Collabfiltrator 4.0.1 has been released in the Burp Suite BApp Store and can also be manually installed from my GitHub repository: https://github.com/0xC01DF00D/Collabfiltrator Supported RCE Targets: Supported SQLi Targets: New functionality Highlights: The Backstory If you are not interested in...

Turning Blind RCE into Good RCE via DNS Exfiltration using Collabfiltrator [Burp Plugin]

During one of my recent penetration tests, I was able to achieve blind remote code execution on a target, however, due to egress filtering, I was unable to get any reverse shells out through commonly allowed outbound ports (e.g. 80/TCP,...

Getting read access on TGI Friday’s online ordering system [FIXED]

TGI Friday s is an american style restaurant chain that is popular not just in the United States, but also in other countries all over the world. My initial interest sparked when I received a marketing email from TGI Fridays promoting their new...

Getting free food from Panera Bread (MyPanera Rewards) [FIXED]

Panera Bread is a bakery-café chain that originated as the Saint Louis Bread Company in Missouri. They offer a loyalty program called MyPanera Rewards, which allow customers to receive discounts and free food for frequent visits. Below is a Proof of Concept video, demonstrating...

Revisiting XSS payloads in PNG IDAT chunks

Update 06/17/2016: Hosting your payload on github is free. That will save you hosting fees. I have edited the steps below with details on how to do that. /u/deadmanrose3 has created a python port and has generated several .BZ short...

Getting free food from TGI Friday’s (Give Me More Stripes Rewards) [FIXED]

TGI Friday s is an american style restaurant chain that is popular not just in the United States, but also in other countries all over the world. They have a rewards program called Give Me More Stripes . The reward program gives...

SpartanNash – Yes! Rewards Mobile Application Vulnerability Exposing Private Customer Information [FIXED]

SpartanNash, formerly Spartan Stores, is a food distributor and grocery store retailer headquartered in Byron Center, Michigan. Some of the popular grocery store chains they own include: D W Fresh Market, Family Fare, VG s Grocery, and Glen s Markets. They offer a loyalty program called...

DTE Energy Mobile App Vulnerability Exposing Customer Information [FIXED]

DTE Energy is a Detroit, Michigan-based utility company that provides residential and commercial electric and natural gas. Where I m located, they are the natural gas company we use to heat our homes. Like many other companies, DTE offers a convenient mobile...