Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @ga1ois
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @ga1ois
-
The slides of our talk "Pool Fengshui in Windows
#RDP Vulnerability Exploitation" at#bluehatseattle are available. https://github.com/ga1ois/BlueHat-2019-Seattle … Three ways for Pool Feng Shui with RDP PDU, two new methods to exploit CVE-2019-0708#bluekeep.pic.twitter.com/4ny08Ba4TL
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Tao Yan proslijedio/la je Tweet
Nice detailed write up on some different ways to perform kernel heap spray to exploit BlueKeep. Missed a much easier way though :phttps://unit42.paloaltonetworks.com/exploitation-of-windows-cve-2019-0708-bluekeep-three-ways-to-write-data-into-the-kernel-with-rdp-pdu/ …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
A blog post about how to write data into the kernel with RDP PDU. It can be and not only can be used for BlueKeep exploit.
#RDP#BlueKeephttps://unit42.paloaltonetworks.com/exploitation-of-windows-cve-2019-0708-bluekeep-three-ways-to-write-data-into-the-kernel-with-rdp-pdu/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
I guess there are more those interesting PDUs existing, what kind of PDUs did you use?
@MalwareTechBlog@zerosum0x0@ryHanson@theori_iopic.twitter.com/1GhsCR2zbXHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
bitmap cache, refresh rect and client name request are interesting PDUs, some of them can allocate a huge pool, some of them can be sent for multiple times legitimately, some of them can allocate controllable size pool with controllable data.
#RDPpic.twitter.com/ORLncQmeMC
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
CVE-2019-0708 seemed like a IcaDereferenceChannel double free at the first glance and then a IcaBindChannel out of boundary write at the second glance, but in fact it is a dangling pointer UAF(MCSPortData) at the third glance. (copy from Sixty Million Dollar Man
) #RDPpic.twitter.com/WhSfoA1LOD
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
The source code of exploit showed in Recon Montreal 2018 was released, have fun! https://github.com/ga1ois/Recon-2018-Montreal/tree/master/source …https://twitter.com/ga1ois/status/1010270606237958144 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Our
@reconmtl slides PWN Flash with Reflections and HashTables are available athttps://github.com/ga1ois/Recon-2018-Montreal/blob/master/Pwn%20Flash%20with%20Reflections%20and%20HashTables.pdf …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Turn off your smart card redirection for the Terminal Service (RDP) on Windows XP and 2k3. https://twitter.com/_jsoo_/status/869890544758996992 …
Tweet je nedostupan.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
My slides at CanSetWest2014: "The Art of Leaks: The Return of Heap Feng Shui".https://github.com/ga1ois/CanSecWest2014/blob/master/The%20Art%20of%20Leaks%20-%20read%20version%20-%20Yoyo.pdf …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.