Bottle Framework
Exploiting the bottle framework
Bottle is a fast, simple and lightweight WSGI micro web-framework for Python.
Popping a rev shell through a cookie πͺ
Good write up here:
In bottle, the cookies are signed with a secret key. By default is is found at /app/config/secret.py
Complete code for generating cookie from the above link. Encyption may not be md5, could be sha256, or sha1
Practice boxes
Proving grounds - bottleup
Last updated