Skip to content

Commit bd54ec6

Browse files
committed
One more spelling correction, I promise
1 parent 055632d commit bd54ec6

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

_posts/2018-11-29-seccon_ghostkingdom.markdown

+1-1
Original file line numberDiff line numberDiff line change
@@ -143,7 +143,7 @@ The upload looks like this after you've selected a photo:
143143
![upload]({{site.url}}/images/seccon18/convert.png)
144144

145145

146-
This is just a random JPG I had in my downloads folder form another CTF we competed in. Bonus points if you know which CTF it was ;).
146+
This is just a random JPG I had in my downloads folder from another CTF we competed in. Bonus points if you know which CTF it was ;).
147147

148148
Now the really interesting thing here is the "convert" link. I mean it will be, it's the only other thing on the page apart from "back" so that's a bit of a pointless statement. But what I really mean is that "converting" an image is a _very_ strong indicator that we're dealing with an ImageTragick style exploit. Since that's triggered by user controlled input into an ImageMagick command, which `convert` is one of.
149149

0 commit comments

Comments
 (0)