nginx built against OpenSSL 1.0.1c, vulnerable to Heartbleed (CVE-2014-0160): a TLS heartbeat request with a length larger than its payload makes the server answer with up to 64 KB of its memory.
Pas commencéDockercommit 1bc472ex86_64 · aarch64Secret
Exploit CVE-2014-0160 (Heartbleed) to read secrets from the server's memory.
Le brief de ce lab se trouve dans son dépôt.