You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Since we already have IDAT chunk injection that survives the various post-filtering techniques like PHP-GD compression, PHP-GD resizing, and ImageMagick resizing (unlike PLTE & tEXt), this is not a hot issue. But, nice to have more options.
Description:
Since we already have IDAT chunk injection that survives the various post-filtering techniques like PHP-GD compression, PHP-GD resizing, and ImageMagick resizing (unlike PLTE & tEXt), this is not a hot issue. But, nice to have more options.
Reference:
https://www.synacktiv.com/publications/persistent-php-payloads-in-pngs-how-to-inject-php-code-in-an-image-and-keep-it-there.html
Credits to Quentin Roland.
The text was updated successfully, but these errors were encountered: