Pwn2Own Tokyo 2020: Defeating the TP-Link AC1750 https://www.synacktiv.com/en/publications/pwn2own-tokyo-2020-defeating-the-tp-link-ac1750.html
Synacktiv
Pwn2Own Tokyo 2020: Defeating the TP-Link AC1750
write-up » Hack The Box: Passage https://khaoticdev.net/hack-the-box-passage/
About the security content of iOS 14.4.1 and iPadOS 14.4.1 https://support.apple.com/en-us/HT212221
Apple Support
About the security content of iOS 14.4.1 and iPadOS 14.4.1
This document describes the security content of iOS 14.4.1 and iPadOS 14.4.1.
VU#782301: pppd vulnerable to buffer overflow due to a flaw in EAP packet processing https://www.kb.cert.org/vuls/id/782301/
www.kb.cert.org
CERT/CC Vulnerability Note VU#782301
pppd vulnerable to buffer overflow due to a flaw in EAP packet processing
Bazar Drops the Anchor https://thedfirreport.com/2021/03/08/bazar-drops-the-anchor/
The DFIR Report
Bazar Drops the Anchor
Intro The malware identified as Anchor first entered the scene in late 2018 and has been linked to the same group as Trickbot, due to similarities in code and usage of the two different malware families in the same intrusions. In 2020 the Bazar malware family…
New SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452 https://www.fireeye.com/blog/threat-research/2021/03/sunshuttle-second-stage-backdoor-targeting-us-based-entity.html
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
Qualcomm IPQ40xx: Analysis of Critical QSEE Vulnerabilities https://raelize.com/blog/qualcomm-ipq40xx-analysis-of-critical-qsee-vulnerabilities/
Raelize
Qualcomm IPQ40xx: Analysis of Critical QSEE Vulnerabilities
Raelize provides top-notch embedded device security serrvices like consultancy, testing, research and training.
Zero-day vulnerabilities in Microsoft Exchange Server https://securelist.com/zero-day-vulnerabilities-in-microsoft-exchange-server/101096/
Securelist
Zero-day vulnerabilities in Microsoft Exchange Server
The four vulnerabilities inside Microsoft Exchange Server allow an attacker to gain access to all registered email accounts, or to execute arbitrary code (RCE) within the Exchange Server context.
Automated Detection of Control-flow Flattening https://synthesis.to/2021/03/03/flattening_detection.html
Fuzzing Image Parsing in Windows, Part Two: Uninitialized Memory https://www.fireeye.com/blog/threat-research/2021/03/fuzzing-image-parsing-in-windows-uninitialized-memory.html
Trellix
Research | Trellix Stories
Trellix Research, get the latest cybersecurity trends, best practices, security vulnerabilities, and more from industry leaders.
Safe code & pitfalls: DLL side-loading, WinAPI and C++: Why your C++ (or not) app is probably vulnerable right now https://medium.com/@1ndahous3/safe-code-pitfalls-dll-side-loading-winapi-and-c-73baaf48bdf5
Medium
Safe code & pitfalls: DLL side-loading, WinAPI and C++
Why your C++ (or not) app is probably vulnerable right now
The Lone Sharepoint https://www.crummie5.club/the-lone-sharepoint/
Microsoft Windows “LoadUvsTable()” Heap-based Buffer Overflow Vulnerability https://www.emt.ae/microsoft-windows-loaduvstable-heap-based-buffer-overflow-vulnerability/
emt Distribution - Technology Distributor, Endpoint Security, SIEM, WAF, Firewall, Virtualization, SIEM for MSSP, Cloud Solutions, MSP, Patch Management, Vulnerability Intelligent, Web Vulnerability Scanner, BlackStratus, Academy, Kaspersky Lab, Avira, ESET, AlienVault, Secunia, Flexera, Parallels, Network Monitoring, Whtasup Gold, IPSWITCH
Microsoft Windows "LoadUvsTable()" Heap-based Buffer Overflow Vulnerability | emt Distribution - Technology Distributor, Endpoint…
By Hossein Lotfi, Senior Security Specialist Update December 14, 2016: During the analysis of the fix of Microsoft we confirmed a related error remains unpatched. Therefore an additional Secunia Advisory SA74000 [5] has been issued to account for that. On…
Interesting write-up! » How I Might Have Hacked Any Microsoft Account https://thezerohack.com/how-i-might-have-hacked-any-microsoft-account
The Zero Hack
How I Might Have Hacked Any Microsoft Account - The Zero Hack
This article is about how I found a vulnerability on Microsoft online services that might have allowed anyone to takeover any Microsoft account without consent permission. Microsoft security team patched the issue and rewarded me $50,000 as a part of their…
33c3 CTF Write-up: Shia https://secgroup.github.io/2017/01/03/33c3ctf-writeup-shia/
Very nice content here to learn about software exploitation » Offensive Software Exploitation (OSE) Course https://exploitation.ashemery.com/
exploitation-course
OFFENSIVE SECURITY & REVERSE ENGINEERING (OSRE) Course
Offensive Software Exploitation Course
Reverse Engineering a Flutter app by recompiling Flutter Engine
https://tinyhack.com/2021/03/07/reversing-a-flutter-app-by-recompiling-flutter-engine/
https://tinyhack.com/2021/03/07/reversing-a-flutter-app-by-recompiling-flutter-engine/
Tinyhack.com
Reverse Engineering a Flutter app by recompiling Flutter Engine
It is not easy to reverse engineer a release version of a flutter app because the tooling is not available and the flutter engine itself changes rapidly. As of now, if you are lucky, you can dump the classes and method names of a flutter app using darter…
Reverse-engineering Rosetta 2 part2: Analyzing other aspects of Rosetta 2 runtime and AOT shared cache files https://ffri.github.io/ProjectChampollion/part2/
Analyzing Attacks Against Microsoft Exchange Server With China Chopper Webshells https://unit42.paloaltonetworks.com/china-chopper-webshell/
Unit 42
Analyzing Attacks Against Microsoft Exchange Server With China Chopper Webshells
We analyze incidental artifacts of China Chopper webshell attacks against Microsoft Exchange Server, gaining insight into attackers' methodology.