Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
Blokirali ste korisnika/cu @mehqq_
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @mehqq_
-
Prikvačeni tweet
@orange_8361 and I have published the full details of pre-auth RCE on Fortigate SSL VPN! The next one for Pulse Secure SSL VPN is on the way. Stay tuned! Also, thanks everyone for coming!https://devco.re/blog/2019/08/09/attacking-ssl-vpn-part-2-breaking-the-Fortigate-ssl-vpn/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
New writeup, one of my favorite bugs
-
Filling in the Blanks: Exploiting Null Byte Buffer Overflow for a $40,000 Bounty
https://samcurry.net/filling-in-the-blanks-exploiting-null-byte-buffer-overflow-for-a-40000-bounty/ …
Featuring...
@d0nutptr@0xacb@Regala_@JLLiS@Yassineaboukir@plmaltaispic.twitter.com/RomLgdCcSC
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Getting Arbitrary Code Execution from fopen's 2nd Argument http://hugeh0ge.github.io/2019/11/04/Getting-Arbitrary-Code-Execution-from-fopen-s-2nd-Argument/ …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
The last part of our Attacking SSL VPN series is out - The Golden Pulse Secure SSL VPN RCE Chain, with Twitter as Case Study! https://blog.orange.tw/2019/09/attacking-ssl-vpn-part-3-golden-pulse-secure-rce-chain.html … "If you have a nuclear level weapon, when is it ready for public disclosure?"
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
libFuzzer now works on Windows, I put together a couple notes on getting fuzzers to build with a cmake & Visual Studio projecthttp://ekse.github.io/fuzzing/2019/08/07/libfuzzer-windows-cmake.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Twitter disclosed a bug submitted by orange: https://hackerone.com/reports/591295 - Bounty: $20,160
#hackerone#bugbountypic.twitter.com/MLJ9Lt2IEw
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Just drop the RCEs, slides(
@BlackHatEvents will fix soon) and blog of@mehqq_ and me's#BHUSA and#DEFCON talk - Infiltrating Corporate Intranet Like NSA: Pre-auth RCE on Leading SSL VPNs! Please check that and let us know if you have any questions!https://blog.orange.tw/2019/08/attacking-ssl-vpn-part-2-breaking-the-fortigate-ssl-vpn.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
See you in DEFCONpic.twitter.com/5HW3OArvwT – mjesto: Planet Hollywood Resort & Casino
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Oh my god! Best server side bug of
@PwnieAwards 2019, with our CTF and DEVCORE pwning queen@mehqq_pic.twitter.com/MqLcTcd0us
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Appetizer for our
#BHUSA and#DEFCON talk !@mehqq_ and I will cover more hard-core exploitations, crazy bugs chains and SSL VPN 0days in our incoming presentation! Please look forward to it :Phttps://blog.orange.tw/2019/07/attacking-ssl-vpn-part-1-preauth-rce-on-palo-alto.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
@mehqq_ and I will present at#RomHack2019 this year! See you there :Phttps://twitter.com/cybersaiyanIT/status/1148170865391153152 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Here is my challenge in WCTF 2019. https://github.com/scwuaptx/LazyFragmentationHeap … Hope everyone can learn more windows heap from this challenge. About windows 10 NT heap https://www.slideshare.net/AngelBoy1/windows-10-nt-heap-exploitation-chinese-version … I only write Chinese version slide, I will release an English version soon.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Is it possible to install IDA Pro without owning installation password? Sure, why not?https://devco.re/blog/2019/06/21/operation-crack-hacking-IDA-Pro-installer-PRNG-from-an-unusual-way-en/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Achievement unlocked! Got RCE and the highest bounty on Twitter bug bounty program XDhttps://hackerone.com/orange
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
It's my honor to present at
#BHUSA again!@mehqq_ and I will show our research and disclose pre-auth RCEs on at least 3 leading SSL VPN vendors! https://www.blackhat.com/us-19/briefings/schedule/#infiltrating-corporate-intranet-like-nsa---pre-auth-rce-on-leading-ssl-vpns-15545 …@BlackHatEventsHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Nice writeup+(0x41414141) PoC for Mozilla Firefox HTML5 Stream Parsing Use-after-free Vulnerability (CVE-2018-18500) by Yaniv Frank from
@SophosLabs: https://news.sophos.com/en-us/2019/04/18/protected-cve-2018-18500-heap-write-after-free-in-firefox-analysis-and-exploitation/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
chromacity: Escaping the VM with newlines. My write-up of the challenge by
@_niklasb. https://theofficialflow.github.io/2019/04/26/chromacity.html …pic.twitter.com/4iBXOxX6SjHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Our research team published the Guide to the world of AFL fuzzershttps://habr.com/en/company/dsec/blog/449134/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
[BLOG] Reverse-engineering Broadcom wireless chipsets by
@Phenol__ https://blog.quarkslab.com/reverse-engineering-broadcom-wireless-chipsets.html … The long and good trip of an intern, then the long and sad disclosure timeline of 5 vulnerabilities. Thx to@Broadcom we dont know what is vulnerable...Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
EXPLOIT for CARPE (DIEM): CVE-2019-0211 Apache Root Privilege Escalationhttps://github.com/cfreal/exploits/tree/master/CVE-2019-0211-apache …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
meh proslijedio/la je Tweet
Wow! China Airport face recognition systems to help you check your flight status and find the way to your gate. Note I did not input anything, it accurately identified my full flight information from my face!pic.twitter.com/5ASdrwA7wj
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
