From what i know about this entire ethical hacking saga of CBSE.
This wanna be Nisarga Adhikary is not the guy who found this bug/loophole.
It is someone else. I know it because news was shared with me before it was made public by the individual who found this bug. It's only me who advised him to go to the right authorities. But for some reason he shared some information with this guy and without prior permission he posted it and took all the credit.
What a bufoon.
After #CBSE, we found RCE + full server control including the database on another subdomain of Onmark
We didn’t perform any harmful actions no data was touched or leaked.
This is just another proof that serious vulnerabilities still exist.
Reported responsibly.
#cybersecurity
After #CBSE, we found RCE + full server control including the database on another subdomain of Onmark
We didn’t perform any harmful actions no data was touched or leaked.
This is just another proof that serious vulnerabilities still exist.
Reported responsibly.
#cybersecurity