Course
In this challenge, you will exploit DOMPDF to gain code execution by injecting a stylesheet that links to a malicious font file. This lab is based on an insightful blog post by Positive Security.
Skills covered
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.