My second blog in attack surface analysis is out. This time I will talk about "Custom Protocol Handlers" and discuss 10 bugs (none are mine). Custom protocol handlers are a great way to convert a local attack to a remote one.https://parsiya.net/blog/2021-03-17-attack-surface-analysis-part-2-custom-protocol-handlers/ …
Replying to @CryptoGangsta
also I like this vuln class: desktop.ini with [.ShellClassInfo] DirectoryClass=WindowsBackupFolderOptions can you figure out how to do the parameter injection ? :D
9:49 AM - 19 Mar 2021
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.