Rishabh Shukla
Rishabh Shukla
Import URLs from Burp suite logs - Feature
@anacrolix Do you have any suggestion on how to mitigate this, so maybe I can go around fixing this.
I think what we could do is that if the developer using the library wants to announce the URL to be localhost, he has to pass a flag called -`-insecure`...
@anacrolix If the user itself has to pass `--insecure` flag isn't the user is taking responsibility? `It could be possible to attack arbitrary network locations, even on the wider internet.`...
@anacrolix I have started to work on this meanwhile can you look into this https://huntr.dev/bounties/2-anacrolix/torrent/
Hey if the issue still alive, I will like to contribute.
> @0xrishabh will you be able to sign the CLA? Merging is blocked until then. Yes, can you direct me on how to do it?
I wanna take this