@DoctorKarl@Cosmic_Horizons@cosmicpinot Or.
Both are moving on the x and y.
Then a z multipler is applied to the bucket.
Now the fruit still on the same path
Bucket is not as it has a z multipler.
@DoctorKarl@Cosmic_Horizons@cosmicpinot It's just timing.
He is moving both objects (bucket, red fruit), from the ground, up.
At some point(end of his reach), he applies a force to the bucket.
The fruit continues on original trajectory, bucket takes a new path.
In the end, its just a little flick for this trick.
@LiveOverflow ok so this is a dead thread now, but I finally found what you used this for and can see the discrepancy between what I thought and what you asked.
I skipped the keyword "pure" as in, an open redirect by itself. had I paid more attention I would have agreed out of the box.
Derived “Master Faces” that unlock face based auth. A synthesized set of nine has 40-60% success. TL;dr Face auth extremely vulnerable. https://t.co/Ync6F8bckB
@LiveOverflow@LivEdOverflow but a bufferoverflow is just a misused or misconfigured buffer, with unintended data.
how does that differ from ?redirect=<something unintended>
@LivEdOverflow@LiveOverflow alternatively you could think of ?redirect= as EIP (albeit verrrrrry broadly).
if i control EIP then i control the flow, what happens next is up to your imagination.
@LivEdOverflow@LiveOverflow you could also think of an open redirect like an ANY ANY firewall rule.
unless you intended that, its a misconfiguration and people can take advantage of that for their own gain.
@LiveOverflow additionally I could see an attacker utilising an open redirect to get browser fingerprint prints, ad revenue, fine-tune a phishing campaign.
all due to the redirection appearing to have more trust associated with it than maybe a standard link.
@LiveOverflow my guess is an open redirect could also be used to bypass same-origin policies.
would you consider that a form of exploitation if the open redirect facilities the end goal?
@LiveOverflow I don't know if this is still a a thing, but say an attacker already has MiTM capabilities, but cant inject because its all HTTPS traffic.
they can use an open redirect to downgrade a HTTPS to HTTP, giving them the ability to then proceed with other MiTM attacks (maybe).
@LiveOverflow say for whatever reason a website will accepts links to custom JS code and runs it from a website it trusts.
The only mitigation is it checks the domain of the link.
An open redirect in the trusted site gives you a means to bypass the check and run code.