Chaining XSS, SSRF, and deserialization vulnerabilities to get RCE
Abusing Backup Operators group to dump Active Directory database