source:
[
Code:
https://x.com/gmhzxy/status/1822871063795315135
translation:
This is a common .DS_Store path leak flaw @HexRaysSA
1. Subdomain enumeration to get the second-level domain name http://out5.hex-rays.com
2. Download http://out5.hex-rays.com/.DS_Store file
3. Decrypt .DS_Store and get the relative path beta90_6ba923