Does anyone remmeber this Github bug bounty story?

I remember watching a video on YouTube explaining how a researcher found a crazy bug in github through an image upload for their profile. I'm struggling to remember the details but I believe it had something to do with using an image container format that allowed code injection or execution of some sort, though I could be wrong. Anyway he have any idea what I'm thinking of?

submitted by /u/Government_Royal
[link] [comments]

from hacking: security in practice https://ift.tt/Ecup5N0

Comments