A trivial bypass was fixed in DOMPurify 3.2.5 (https://t.co/anfo1wseaD). It works only if an attacker can write "-->". DOMPurify usually tries to prevent you from writing "-->" on attributes, but it can be written through DOMPurify hooks in some cases, for example. PoC👇
Let's goooo! Nikolaos Mourousias, Caue Obici & Bruno Halltari (@deltaclock, @caueobici & @BrunoModificato) of OtterSec was able to exploit LM Studio! If confirmed, they win $40,000 and 4 Master of Pwn points. They're off to the disclosure room to explain how they did it. #Pwn2Own #P2OBerlin
New research, I did found many wallets /web 3 products not taking in consideration the difference between desktop env and mobile env leading to high severity issues.
NEW: OAuth misconfigurations show how common dev settings can lead to account takeovers.
Our second deep dive breaks down real cases where overlooking differences between desktop and mobile environments left SDKs, exchanges, and wallets open to exploits.
https://t.co/QWABEOXcSU
NEW: OAuth misconfigurations show how common dev settings can lead to account takeovers.
Our second deep dive breaks down real cases where overlooking differences between desktop and mobile environments left SDKs, exchanges, and wallets open to exploits.
https://t.co/QWABEOXcSU
NEW: The recent supply-chain attack on NPM exposed a fundamental vulnerability in the open-source ecosystem and the risks that lurk within our dependencies.
We break down how the malware worked and practical defenses every dev should know ↓
https://t.co/ZeqAkFR2jo
As a MetaMask user, you do not need to be scared of the supply chain attack that took place earlier today.
MetaMask has multiple layers of defense to protect our products and users:
- Basic Security: We lock our versions, don't push directly to main, have manual and automated checks during the entire development lifecycle, and have robust release processes and monitored rollouts.
- LavaMoat: Prevents malicious code from harming you, even if malicious code was to somehow sneak in. LavaMoat covers both the development lifecycle and runtime scenarios.
- Blockaid: Flags malicious addresses nearly instantaneously, protecting you from compromised dapps.
Security is paramount for MetaMask. We work tirelessly to protect you from attacks and threats, including supply chain attacks.
🧡
NEW: Proof of Reserves you can verify yourself.
We teamed up with @Backpack to build PoRv2, a zero-knowledge system for fast, transparent solvency checks.
More on how we designed it ↓
https://t.co/dfyVlrceRW
We’re excited to announce that Bruno Halltari (@BrunoModificato) will be speaking at the Bug Bounty Village at DEF CON 33!
Stay tuned for more details on their talk, you won’t want to miss it.
#BugBounty#DEFCON#BBV#BugBountyVillage