You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I think I just discovered a significant vulnerability with TorchNoteJS. All user entries end with a =.
This doesn't suggest that communications are not securely encrypted but rather this makes bot obfuscation irrelevant as a sophisticated attacker could ignore any line that doesn't end with a =.
Proposed solutions:
Add a = to the end of generated bot obfuscations.
Determine why ever user input ends with =.
The text was updated successfully, but these errors were encountered:
I think I just discovered a significant vulnerability with TorchNoteJS. All user entries end with a
=
.This doesn't suggest that communications are not securely encrypted but rather this makes bot obfuscation irrelevant as a sophisticated attacker could ignore any line that doesn't end with a
=
.Proposed solutions:
=
to the end of generated bot obfuscations.=
.The text was updated successfully, but these errors were encountered: