Added PoC for CVE-2018-8389 to https://t.co/xrJkaNDIHZ
Also attached the presentation I used at @bsidesdelhi to present the same bug with internals of JScript's GC.
https://t.co/q4u6qEwaAz
Feedback Welcome!
cc @HackSysTeam
@SpinkaMilan@Mandiant > I have not found a way to convince IDA to use the standard Windows 64-bit calling convention by default, without retyping all functions one by one.
You can change the compiler from "Options > Compiler" afaik for the DLLs in ch9
@S1r1u5_ https://t.co/aITNrJFAxz
it ran shorter(30 days) than last year(45 days) but number of challenges were also 1 less(9 vs 10)
But almost the same
Looks like #flareon12 will have similar finisher numbers to last year. #flareon11 had 275 players that solved all levels. With 14 hours left we're at 295 players this year.
For #flareon12 my intial notes are here for 9, 8, 7 and 5
https://t.co/uBnf3cIUaS
Currently traveling, but plan to do a full writeup with all thr deobfuscation scripts later in November
Thanks @Mandiant and the orgs @nickharbour@m_r_tz et al. for the great challenges