项目作者: Bo0oM

项目描述 :
Safari local file reader
高级语言: Python
项目地址: git://github.com/Bo0oM/Safiler.git
创建时间: 2017-07-04T18:39:51Z
项目社区:https://github.com/Bo0oM/Safiler

开源协议:

下载


Info

https://lab.wallarm.com/hunting-the-files-34caa0c1496
https://xakep.ru/2017/07/06/safari-localfile-read/

How to start

Clone files

  1. $ git clone https://github.com/Bo0oM/Safiler.git
  2. $ cd Safiler

Run server

  1. $ [sudo] pip install -r requirements.txt
  2. $ python server.py

Open PoC

Open PoC.xhtm or PoC.webarchive in Safari.
Copy on a USB flash drive and carry it with you :)

Demo

Exploit PoC: https://bo0om.ru/safari_poc/

Demo