Can you compromise a multi-billion dollar company via /health?
We all have those endpoints we instantly ignore in our HTTP history. You see GET /favicon.ico, you ignore it. You see GET /assets/logo.png, you ignore it.
And usually, when you see GET /health, you ignore that too.
Why? Because 99.9% of the time, the...
hacktus.tech4 min read
AmirAli Kariminasab
Nice catch!