There are some techniques to exploit LFI vulnerability. One of them is exploitation via /proc/self/environ.

I found my old video of this exploitation technique, dated March 2008 , pretty old 😀 . The target domain is long gone.  And also, “skb underground hacker” is never existed 😀

Although in the video I said “DEFACING ….”, the truth is, after I completed making the video, I restore the file I change into its initial content. Never intend to do any damage, just for learning.


Okay, here is the video , please enjoy.