Finding bugs inside servfail.network, a DNS management web application written in Bash

Apr 4, 8:00 – 10:00 AM (UTC)

Australia HackerOne Club

Sean Burford presents on the vulnerabilities he discovered and disclosed in servfail.network, a DNS management web app written in Bash

Login to RSVP

About this event!

Hey all,

Sean Burford will speak at this meetup about the bugs he's found in a DNS management web application written purely in Bash. This is a pretty novel web application, but the bugs he has found and the tricks along the way can be helpful in many other areas of offensive security.

Sean will be covering the following in his talk:

* 5 intro and background and how cool servfail.network is

* 10 on the sed RCE

* 10 on the globbing issue exfilled over DNS

* 5 on writing secure shell scripts and the broader context

We will be meeting at UTS Sydney -- UTS Building 11, CB11.04.102, Broadway, Ultimo, 2007

Meetup is on the 4th of April (Friday) at 7PM.

Speaker

  • Sean Burford

When

When

Friday, April 4, 2025
8:00 AM – 10:00 AM (UTC)

Organizer

  • Shubham Shah

    shubs

Contact Us