CVE-2020-1170 - Microsoft Windows Defender Elevation of Privilege Vulnerability https://itm4n.github.io/cve-2020-1170-windows-defender-eop/
itm4n’s blog
CVE-2020-1170 - Microsoft Windows Defender Elevation of Privilege Vulnerability
Here is my writeup about CVE-2020-1170, an elevation of privilege bug in Windows Defender. Finding a vulnerability in a security-oriented product is quite satisfying. Though, there was nothing groundbreaking. It’s quite the opposite actually and I’m surprised…
Chain of Java vulnerabilities that were used in ZDI's Pwn2Own Miami 2020 competition in January 2020 https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Miami_2020/rce_me_v2/rce_me_v2.md
GitHub
PoC/rce_me_v2.md at master · pedrib/PoC
Advisories, proof of concept files and exploits that have been made public by @pedrib. - PoC/rce_me_v2.md at master · pedrib/PoC
Let's Reverse Engineer an Android App! https://yasoob.me/posts/reverse-engineering-android-apps-apktool/
yasoob.me
Let's Reverse Engineer an Android App! - Yasoob Khalid
I had always wanted to learn how to reverse engineer Android apps. There were people out there who knew how to navigate and modify the internals of an APK file and I wasn’t one of them. This had to be changed but it took a long time for that to happen. In…
APC Series: KiUserApcDispatcher and Wow64 https://repnz.github.io/posts/apc/wow64-user-apc/
Learning miasm: Part 2: Analyzing instructions http://www.williballenthin.com/post/2020-01-12-miasm-part-2/
TALOS-2020-1088
Mozilla Firefox URL mPath Information Disclosure Vulnerability https://talosintelligence.com/vulnerability_reports/TALOS-2020-1088
Mozilla Firefox URL mPath Information Disclosure Vulnerability https://talosintelligence.com/vulnerability_reports/TALOS-2020-1088
Pushing yourself through hard hunting days: A bug hunter perspective https://medium.com/bugbountywriteup/pushing-yourself-through-hard-hunting-days-a-bug-hunter-perspective-d03b4c16b04
Medium
Pushing yourself through hard hunting days: A bug hunter’s perspective
Today I am going to talk about the period when you don’t find bugs for several days, weeks or even months. This talk is going to be…
Zero-day in Sign in with Apple https://bhavukjain.com/blog/2020/05/30/zeroday-signin-with-apple/
Reverse Engineering Snapchat (Part I): Obfuscation Techniques https://hot3eed.github.io/snap_part1_obfuscations.html
“You’re Invited!” to Phishing Links Inside .ics Calendar Attachments https://cofense.com/youre-invited-phishing-links-inside-ics-calendar-attachments/
Cofense
Phishing Links Inside .ics Calendar Attachments | You’re Invited!
Cofense has unearthed a new email phishing campaign that delivers .ics calendar invite attachments containing phishing links in the body. Learn more.
[CVE-2020-1948] Apache Dubbo Provider default deserialization cause RCE https://www.mail-archive.com/dev@dubbo.apache.org/msg06544.html
TALOS-2020-1088
Mozilla Firefox URL mPath Information Disclosure Vulnerability https://talosintelligence.com/vulnerability_reports/TALOS-2020-1088
Mozilla Firefox URL mPath Information Disclosure Vulnerability https://talosintelligence.com/vulnerability_reports/TALOS-2020-1088
Windows Process Injection: PROPagate https://modexp.wordpress.com/2018/08/23/process-injection-propagate/
modexp
Windows Process Injection: PROPagate
Introduction In October 2017, Adam at Hexacorn published details of a process injection technique called PROPagate. In his post, he describes how any process that uses subclassed windows has the po…
A Second Look at CVE-2019-19781 (Citrix NetScaler / ADC) https://blog.fox-it.com/2020/07/01/a-second-look-at-cve-2019-19781-citrix-netscaler-adc
Fox-IT International blog
A Second Look at CVE-2019-19781 (Citrix NetScaler / ADC)
Authors: Rich Warren of NCC Group FSAS & Yun Zheng Hu of Fox-IT, in close collaboration with Fox-IT’s RIFT. About the Research and Intelligence Fusion Team (RIFT): RIFT leverages our strategic …
Android App Source code Extraction and Bypassing Root and SSL Pinning checks https://vj0shii.info/android-app-testing-initial-steps/
vj0shii.info
Android App Source code Extraction and Bypassing Root and SSL Pinning checks
In this blog I will be describing the pre-requesty steps I followed for one of the android application penetration testing
CVE-2020-1300: Remote Code Execution Through Microsoft Windows CAB Files https://www.zerodayinitiative.com/blog/2020/7/8/cve-2020-1300-remote-code-execution-through-microsoft-windows-cab-files
Zero Day Initiative
Zero Day Initiative — CVE-2020-1300: Remote Code Execution Through Microsoft Windows CAB Files
In this excerpt of a Trend Micro Vulnerability Research Service vulnerability report, Pengsu Cheng and Yazhi Wang of the Trend Micro Research Team detail a recent code execution vulnerability in Microsoft Windows. The bug was originally discovered and reported…