shielder.it – Let’s jump straight to the strange behavior: up until PHP 7.2.16 it was possible by default to exfiltrate local files via the MySQL LOCAL INFILE feature through the connection to a malicious MySQL se…

Tweeted by @TheHackersNews https://twitter.com/TheHackersNews/status/1288413456320925696

Sometimes they come back: exfiltration through MySQL and CVE-2020-11579