We had a lot of fun handing out our first-ever #Vanguard Awards. If you couldn't be there, we've updated our blog with all the winners. Check it out at https://t.co/BTm4PiLqdm
In a new guest blog, @MarkYason talks about some of the #Adobe#Reader vulns he reported. Two of these bugs, in particular, CVE-2021-28632 and CVE-2021-39840, are related UAF bugs even though they were patched months apart. Read the details at https://t.co/Z4d5hmNLef
Finding an info leak is a key step to a successful exploit chain. @mrpowell details one such leak in #Adobe#Reader that can disclose the base address of Annots.api. Originally reported by @MarkYason, the details of this stellar bug (with video) are at https://t.co/czZmmfNuEr
The tag team of @abdhariri and @mrpowell blog about exploiting a slick UAF in #Adobe#Reader (CVE-2020-9715). The exploit was submitted to us by @MarkYason and patched last month. https://t.co/P9XQXrefEi