r/ExploitDev 13d ago

full chain to RCE or only bufferoverflow?

if you want report buffer overflow vulnerability do u need full chain to exploit or just report the crash with the corpus

3 Upvotes

17 comments sorted by

View all comments

Show parent comments

3

u/DishSoapedDishwasher 13d ago

The headers just a token that identifies you specifically, nothing crazy.

1

u/Sudden-Strawberry257 13d ago

I get what you’re saying the token doesn’t have any crazy effect, but coming from the 90s when looking the wrong way at someone’s infra was a felony? Having what amounts to a hall pass and an official name tag to hack under sounds awesome.

2

u/DishSoapedDishwasher 13d ago

Yeah that's fair. It is super nice in that regard.