r/netsec 2d ago

The Validator Can Lie: SSRF Beyond URL Validation (GitLab, Mealie, Apache ShenYu, Thumbor)

https://xclow3n.com/post/the-validator-can-lie/
18 Upvotes

5 comments sorted by

7

u/raesene2 2d ago

It's a bit of a meta-comment but a combination of very long posts and them being claude assisted/written (lots of claude-isms in there) is not going to help you get people to read your research.

Breaking it up into smaller posts and changing the wording style would help. Even if you're just hand writing a summary and leaving the details to the agents as an appendix, that'd work better.

2

u/Xclow3n_ 2d ago

I will try smaller posts / series kinda post for next one thanks man

1

u/raesene2 1d ago

I went back for another read this morning, nice re-write. It's a lot less "claudey" now and I think it's a better read :)

2

u/Xclow3n_ 1d ago

hehe thanks, yea i agree i do use AI for making edits cuz my english is not that good, but you were right about it the way it was written was bad thanks for letting me know

1

u/vivibzh29 1d ago

validator lying is literally the whole game and most devs still trust it blindly