Hey, I decided to document here in the forums how I managed to get RCE in the Habbo client by smuggling a client-side packet to trigger a lingo injection.
Note that I responsibly disclosed it to Myrax, and it was patched within less than an hour.
Client-side packet smuggling
After testing...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.