🎄 Join our Annual Holiday wargame and win prizes!


Common Pitfalls for Patching Path Traversal

29/05/2024

Lately, I’ve noticed ../ stripping being used to patch Path Traversal in our Attack & Defense AppSec challenges. While it might seem like a quick fix, it doesn’t tackle the root cause of this vulnerability. Plus, there are clever ways to bypass it as I demonstrate in this short video.

Deco line
Deco line

Play AppSec WarGames

Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.

Deco line
Deco line

Got a comment?

Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.

Read more