Log4shell : Fable
My attack was mentioned in Fable 5.1’s scorecard! The section under Trajectory Labs (for whom I’m contracting) mentions a log4shell vulnerability, which I unearthed. If you ask me exactly what this code does, I’ll be the first to admit it beats the heck out of me; much of the time I have no idea what these models are doing, but I’m pretty good at getting them to do it. I know it involves injecting malicious code into a logging service. ...