Down the Cloudflare / Stripe / OWASP Rabbit Hole: A Tale of 6 Rabbits Deep


I found myself going down a previously unexplored rabbit hole recently, or more specifically, what I thought was “a” rabbit hole but in actual fact was an ever-expanding series of them that led me to what I refer to in the title of this post as “6 rabbits deep”. It’s a tale of firewalls, APIs and sifting through layers and layers of different services to sniff out the root cause of something that seemed very benign, but actually turned out to be highly impactful. Let’s go find the rabbits!

