BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//sched.securitybsides.org.uk//bsides-london-2023//speaker
 //9K8QQD
BEGIN:VTIMEZONE
TZID:GMT
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:GMT
TZOFFSETFROM:+0100
TZOFFSETTO:+0000
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T020000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:BST
TZOFFSETFROM:+0000
TZOFFSETTO:+0100
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsides-london-2023-KEFBBU@sched.securitybsides.org.uk
DTSTART;TZID=GMT:20231209T154500
DTEND;TZID=GMT:20231209T163000
DESCRIPTION:The Salesforce platform allows a platform-specific vulnerabilit
 y\, known as SOSL injection. While conceptually similar to SQL injection\,
  testing and exploitation requires different payloads and different approa
 ches.\nIn light of the lack of online documentation\, and a distinct lack 
 of online examples or tutorials\, this talk will explain the issue and its
  consequences. It will illustrate some working methods for detecting and c
 onfirming the existence of the vulnerability within a website\, showing di
 fferent payloads useful payloads for detection and exploitation\, before e
 xplaining the consequences for a vulnerable site and how to fix occurrence
 s of the issue.
DTSTAMP:20260714T130709Z
LOCATION:Track 3
SUMMARY:Slightly SOSL'ed - Locating and Testing SOSL Injection - Nick Dunn
URL:https://sched.securitybsides.org.uk/bsides-london-2023/talk/KEFBBU/
END:VEVENT
END:VCALENDAR
