Here's our latest blog by @sam4k1, where we examine what goes into remotely exploiting a modern Linux kernel using CVE-2022-0435 as a case-study
https://t.co/5ydBRzMyx2
📢Tenemos la primera charla de la Jam.
🥷el señor @airrera
🏬Security Researcher en Immunity Inc.
📃Con grandes aportes a la comunidad como este:
https://t.co/14CJA3EBQN
#securityjam
Check out our new blog, a detailed analysis on our recently disclosed CVE-2022-0435: A Remote Stack Overflow in the Linux Kernel TIPC Module since 4.8 by @sam4k1
https://t.co/DuCubeGRUz
Log4j... Anibal has been doing a bit of research. Check out our blog:https://t.co/uCrfLgnOlY
We've also released GitHub Project Immunityinc - Log4j-JNDIServer - to help test the vulnerability:
https://t.co/4G9CpiezvU
@airrera@__rev
SILICA 7.45 Release - Check it out! https://t.co/zWiUkXfRTs
Fake access point service impersonation attacks can now be customized. There is also a new request monitor view with filtering capabilities.
New version of CANVAS is out!(https://t.co/oBA9nlfEv9)
7.30 is available for all of our customers and contains several new exploits and improvements. Make sure to check out our own implementation of PrintNightmare! We are pushing both LPE and RCE exploits
SILICA 7.44 is out! https://t.co/zWiUkXfRTs
Added the ability to export access point mappings as .docx, improvements in deauth attacks and better error detection and handling when connecting to access points.
Check out our demonstration of chaining the ie_mshtml_doublefree clientside exploit with the wndextra_oob_lpe exploit in CANVAS 7.29 release!
https://t.co/EPV85KfPRz
New CANVAS 7.29 release is OUT!
It includes 3 new exploits, two of them can be chained together to go from client-side to full privileges over a target Windows 10 (CVE-2021-26411 and CVE-2021-1732)
https://t.co/oBA9nlfEv9
CANVAS 7.28 Release - Check it out! https://t.co/ExaN2uQClO
Includes: local privilege escalation exploits targeting Windows, LPE targeting Ubuntu/Debian distros & remote code execution exploit targeting MS Exchange Server
Linux installer now supports Ubuntu 20.04 & Kali 2021.1.
Hey CANVAS Aficionados!
Our latest version of CANVAS has been released!
CANVAS 7.27 can be downloaded from our customer portal.
Check it out...
https://t.co/oBA9nlfEv9
New - SILICA 7.41 Release: Includes the Kr00k Attack, a vulnerability that affected over 1 billion devices. With this attack the confidentiality of packets sent over the air by vulnerable devices is compromised.
View the demo of the attack:
<https://t.co/LMrkAvBGMd>
INNUENDO
New Release v1.7.3 - Oct 2020
* New channel: TCP (Windows, macOS & Linux) & DNS over TCP (Windows)
* Client-side Python (Windows payloads) updated to 2.7.18
* UDP channel supports multiple server-side endpoints, same as TCP channel
Check it out
https://t.co/DDR93LraG8
Immunity is hiring! We're searching for innovators & like minded offense security folks to join our team. Multiple positions open, starting with:
Software Security Engineer - CANVAS: Next Gen
https://t.co/3boIfuGRnH
Positions to be posted soon: Sr Researchers (qty 2), Tech PM