TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

PortSwigger Research

Hiding payloads in Java source code strings

2024-01-23 · Read original ↗

ATT&CK techniques detected

1 predictions
T1027Obfuscated Files or Information
35%
“january 2024 at 15 : 00 utc - updated : wednesday, 24 january 2024 at 12 : 27 utc in this post we ' ll show you how java handles unicode escapes in source code strings in a way you might find surprising - and how you can abuse them to conceal payloads. we recently released a powe…”

Summary

In this post we'll show you how Java handles unicode escapes in source code strings in a way you might find surprising - and how you can abuse them to conceal payloads. We recently released a powerful