Forwarded from Bug Bounty Channel
Hacktivity from luigigubello
https://hackerone.com/reports/358049
RCE via Print function [Simplenote 1.1.3 - Desktop app]
https://hackerone.com/reports/358049
HackerOne
Automattic disclosed on HackerOne: RCE via Print function...
In **Simplenote 1.1.3 - Desktop app** there is a stored XSS vulnerability that can be used to execute arbitrary code. If there is malicious code in the note and the user tries to print it (for...
We present NetSpectre: A remote Spectre attack without attacker-controlled code on the victim, and the first Spectre attack which works without the cache as covert channel.