Quarkslab engineers @RobinDavid1, @MihailKirov1 and Kaname just completed the first public security audit of Bitcoin Core, led by @OSTIFofficial and funded by @bitcoinbrink. Details on the blog post: https://t.co/xPkDEV7LDy Congrats to developers for such software masterpiece !
In iOS 18.4, Apple introduced a bug in dynamic symbol resolutions for some specific exports. @0xf4b took a long journey down a rabbit hole to understand its root cause.
https://t.co/q03QTtw373
Right before #Pwn2Own Ireland 2024, @Creased_ found a vulnerability in Synology TC500 & BC500 security cameras. A blind format string exploit allowed code execution, but Synology patched it, securing the devices in time for the competition.
https://t.co/Q9O781ACDH
Firefox was hit with a 9.8 CVE.
This CVE is a UAF in Animation timelines. This is a CSS trait that specifies the progress of a CSS animation.
More info👇
[#Média 🎙] (Ré)écoutez l’émission @ScienceCQFD spéciale #cryptographie avec Anne Canteaut. Retrouvez aussi, dans le reportage de @CelineLoozen, l’intervention de María Naya-Plasencia, André Chailloux et Nicolas Sendrier (équipe COSMIQ @Inria) 🔐💻 : https://t.co/Bg210X4BHh
@f4flo_jerome@_SaxX_ Le problème n'est pas forcément le service d'authentification, mais la potentielle fuite de la base de donnée qui contienderait le condensat du mot de passe.
I published an advisory on discovering and chaining multiple vulnerabilities to fully compromise and SELinux context escape on Cisco Unified Communications Manager: https://t.co/iebimWm2i5
Have you ever wondered what the attack surface of Counter Strike: Global Offensive looks like? Our ninjas @myr463 and @v1csec studied it and found a server to client bug! Read more details about this research in our latest blogpost.
https://t.co/QaoheZbQoi
been on a bit of a hiatus but wanted to share a post i wrote exploring kernel heap exploitation and the new random kmalloc caches feature in the 6.6 kernel 🤓
https://t.co/VKF89klCqy
Exploiting a use-after-free vulnerability in the Netfilter subsystem in Linux kernel (CVE-2022–32250)
Excellent blog post by @theori_io
https://t.co/6QkBzGViW5
#Linux#exploit#infosec