Honored to talk in #ROOTCON Recovery Mode abt advanced shellcode analysis↓
https://t.co/2EhKDfGzEf
Thanks @rootconph,@shipcod3,Jamie,Dax+crews & audience for having me! Send ur Q via #DM here
The talk will be shared @ ROOTCON youtube & slide will be on their site
-- @unixfreaxjp
Watch this joint webinar with Splunk to discover valuable insights into the differences between digital forensics, incident response and threat hunting in the modern SOC.
Introducing the OMG Keylogger Cable!
Follow along for early access. It took us over a year to create, and we are happy to announce it during @defcon once again.
More info: https://t.co/jASPCwJPGE
And here is my latest Windows 10 EoP writeup! 🥳
CVE-2020-1170 | 🛡️ Microsoft Windows Defender Elevation of Privilege Vulnerability
👉https://t.co/QBxosbSyVx
Finally getting around to posting about fuzzer improvements. Implemented a target snapshot mechanism that improves speed 20-30x and a rudimentary code coverage system that allows to crash our test binary almost instantly. Thanks to all that helped! https://t.co/FVNy2ROdJ0
Found a Gitlab instance on a penetration test or red teaming engagement? If the version is <12.9.1, chances are you can get (unauthenticated) RCE by chaining some under-the-radar vulnerabilities! Info in thread 👇
#infosec#redteam#bugbountytips#hacking#gitlab
I have 16 bugs fixed in Microsoft's June security update, some are RCE, some are LPE, but this one is a little bit different, it's a buffer overflow in RPC marshalling for both RCE and LPE:
https://t.co/83VI0nTjnl