Skip to main content

Posts

Featured

Blind SSRF via Aliyun OSS Image Processing + Content-Type Upload Bypass

  Bug Bounty Report: Blind SSRF via Aliyun OSS Image Processing + Content-Type Upload Bypass Reported to: security@moonshot.cn (or appropriate channel) Date: 2026-06-26 Reporter: FrankSx Severity: High (Blind SSRF to Internal Cloud Infrastructure + File Upload Bypass) 1. Executive Summary Two related vulnerabilities were identified in Kimi's file upload and CDN serving infrastructure: Content-Type Upload Bypass: The /apiv2/slides:upload endpoint accepts arbitrary file types as long as the Content-Type header is declared as an image type (e.g., image/svg+xml , image/png ). This allows uploading non-image files (PDFs, HTML, scripts, etc.) that are then served from the CDN with the declared image type. Blind SSRF via Aliyun OSS Image Processing: User-uploaded files on kimi-img.moonshot.cn are stored in Aliyun OSS. The CDN URLs accept arbitrary x-oss-process query parameters, including the image/watermark operation. This operation fetches an attacker-controlled URL server-s...

Latest posts

The AI Software Engineer That Read Us /etc/shadow

Facebook Comet Prelude : The Observation Deck: Facebook's Error, Telemetry, and Instrumentation Stack.

Facebook Comet Prelude: ServerJS and the data-sjs Pipeline: How Facebook Streams Its UI

Facebook Comet Prelude: Facebook's Custom URL Scheme Allowlist: A 150-Entry Attack Surface Inventory

Facebook Comet Prelude: The __d Machine: Facebook's Bootloader and Haste Module System

Facebook Comet Prelude: Anatomy of a Facebook Async Request: DTSG, LSD, jazoest, and getAsyncParams

Facebook's Custom URL Scheme Allowlist: A 150-Entry Attack Surface Inventory Inside Ghost Owl: Facebook's Anti-Tampering Immune System

root@franksx:~$ --:--:-- entropy:00000000 scrapers_repel:0 mode:adversarial