Reverse engineering games for fun and SSRF - part 2

18th Jan 2019

This is the final part about reverse engineering a game and found a SSRF vulnerability in it. We're going to take a look at the network protocol and try to understand what's going on, then how it could be modified to inject custom data.

Reverse engineering games for fun and SSRF - part 1

18th Jan 2019

During this holiday I had some time to try a new game; while I was playing it I asked myself if I could do some digging and found any vulnerability. This is the journey that took me from reverse engineering the game until I found an interesting SSRF.