Post cover image

November 18, 2025

A Chain of Vulnerabilities Leading to Critical Information Disclosure

Forgotten Cognito client → XSS → SSRF → LFI → .env file. One misconfiguration led to full internal file disclosure and secret leaks.

By Pwnr

3 min read