/MRF-Practice

a vulnerable android application to practice request forgery.

Primary LanguageJava

Description

MRF Practice is a vulnerable android application to practice request forgery, the application has an known vulnerabilities listed below.

Vulnerabilities

Right now, the application is affected by three vulnerabilities and we will publish a full write-up about them on 11th Ramadan - 2nd April - In sha'Allah.

Hints

The three vulnerabilities is two high-severity vulnerabilities and a 1-click RCE, exploits requires chaining with web application's low fruit bugs and best practices.


الحمدلله، والسلام عليكم