Forum Discussion
Serial Maze Support Group
- 2 months ago
Sabrina mentioned in another post. "I would recommend having a look at the Browser Developer Tools: Console and JavaScript Execution lab, as there is some overlap in the tasks. We don't have an offensive lab on Python pickles, but you may find Python: Insecure Deserialization useful, including the further reading linked at the end. Good luck!"
In the Insecure Deserialization it mentions "The developers of a GPS fitness tracking application unfortunately implemented the feature to upload jogging routes vulnerable to insecure deserialization attacks, since they decided to use the insecure pickle format. Your task is to remediate this vulnerability using the more secure JSON format."
So maybe this can be of help.
:-)
I'm stuck on serial maze, found one endpoint, it says "What a pickle... You need the secret to continue." not sure how to proceed from here
- Nneka_AN2 months ago
Silver I
Hi sabil10​
I see you have also been burned by the maze. Welcome to the support group 😅
Hopefully, autom8on​, domel44​, or jamesstammers​ might be able to provide some assistance.
Alternatively, if you read through the thread on this page, you might be able to pick up some clues to help. 🤩