CVE-2020-12753-PoC -- SBL1/aboot vuln for Secure EL3 arbitrary code execution on the LG Stylo 4 (AMZ/Q710ULM) https://github.com/shinyquagsire23/CVE-2020-12753-PoC
GitHub
GitHub - shinyquagsire23/CVE-2020-12753-PoC: A proof-of-concept for CVE-2020-12753
A proof-of-concept for CVE-2020-12753. Contribute to shinyquagsire23/CVE-2020-12753-PoC development by creating an account on GitHub.
Chimichurri Reloaded - Giving a Second Life to a 10-year old Windows Vulnerability https://itm4n.github.io/chimichurri-reloaded/
itm4n’s blog
Chimichurri Reloaded - Giving a Second Life to a 10-year old Windows Vulnerability
This is a kind of follow-up to my last post, in which I discussed a technique that can be used for elevating privileges to SYSTEM when you have impersonation capabilities. In the last part, I explained how this type of vulnerability could be fixed and I even…
APC Series: User APC Internals https://repnz.github.io/posts/apc/kernel-user-apc-api/
Forwarded from CCN-CERT
Un binario sospechoso que no conecta con su C2. Nuevo reto de reversing en #AteneaCCNCERT para este viernes. https://t.co/ZZCAE8sDpl https://t.co/CZDZYEvhMI
Si no la conocéis, la plataforma ATENEA es una especie de "CTF" para aprender a analizar binarios
básico para algunos, seguro, pero para poder correr hay que saber andar ;)
THE FIX FOR CVE-2020-9859 AND THE LIGHTSPEED VULNERABILITY https://www.synacktiv.com/posts/exploit/the-fix-for-cve-2020-9859-and-the-lightspeed-vulnerability.html
From zero to tfp0 - A Walkthrough of the voucher_swap exploit http://highaltitudehacks.com/2020/06/01/from-zero-to-tfp0-part-1-prologue/ and http://highaltitudehacks.com/2020/06/01/from-zero-to-tfp0-part-2-a-walkthrough-of-the-voucher-swap-exploit/
Prateekg147
From zero to tfp0 - Part 1: Prologue
On Jan 22, 2019, Google Project Zero researcher @_bazad tweeted the following.
Understanding and Abusing Process Tokens https://medium.com/@seemant.bisht24/understanding-and-abusing-process-tokens-part-i-ee51671f2cfa
Medium
Understanding and Abusing Process Tokens — Part I
Introduction