Python Read Gadgets

Use Python internal read gadgets to extract secrets from vulnerable applications. Trigger this skill whenever the user mentions Python format string vulnerabilities, class pollution, Flask/Django secret extraction, Werkzeug debug console access, environment variable leakage, or any scenario where they have read-only access to Python internals but need to pivot to sensitive data. Also use when users ask about Python sandbox escapes, __globals__ traversal, sys.modules access, or CTF-style Python exploitation.

abelrguezr Updated

File contents

abelrguezr/hacktricks-skills/tree/main/skills/generic-methodologies-and-resources/python/python-internal-read-gadgets commit 0f3d59f969

Frequently asked questions

npx skillmds@latest add abelrguezr/python-read-gadgets