Skip to main content

Posts

Sample For Aws

AWS S SS S S S S S S S SW S S S S S S S
Recent posts

Playing With Chatbots 🤖

Crashing Chat Bot System ⭐Contents ➡️Missing Rate Limiting ➡️Unrestricted File Upload ➡️Reflected and Blind cross site scripting ➡️Application level Dos -------------------------------------------------------------------- 👉 Rate Limiting in Chat Bots 🌟 Description:- Chat Bots are used for interaction between people and services to enhance customer experience.And an user can send messages.When the message endpoint has no rate limit protection then we can send unlimited messages which can leads to denial of service attack. 🌟 Exploitation:- ❇ Send a Message to chatbot and intercept that request into burpsuite ❇ Now Send This Request To Intruder And Repeat It multiple more than 200+ Time By Fixing Any Arbitrary Payload Which Doesn't No Effect Request I Choose Accept-Language: en-US,en;q=0.$5$ ❇ Ater some time you will get 500 status code ❇ Now try to send a message to that CHAT bot with another a