Thrilled to release my latest research on Apache HTTP Server, revealing several architectural issues! https://t.co/7ygwWXY0pd
Highlights include:
⚡ Escaping from DocumentRoot to System Root
⚡ Bypassing built-in ACL/Auth with just a '?'
⚡ Turning XSS into RCE with legacy code from 1996
📣 ANNOUNCEMENT: We're excited to announce our Keynote and Main Stage Speaker Lineup for #BHUSA. Don't miss it! #cybersecurity#infosec
Learn more here:
https://t.co/IJIQFD0rcy
Microsoft: "We care about backwards compatibility so much that we will leave insecure stuff in the OS sometimes."
Also Microsoft: "We changed Powershell for some unknown reason and some of your old scripts won't work anymore. haha guess you have to rewrite it."
#defcon escapes another brush with cancellation! After 25 years w/Caesars, they cancelled our contract for #defcon32.
A lot of conferences might have buckled, but not DEF CON. Hackers make a way out of no way.
Uncanceled DEF CON 32 will now be held at the Las Vegas Convention Center, on the same dates and for the first time in a while, under one roof.
@thedarktangent 's full post is here: https://t.co/7rQJZmvZpS
@typesfast@lukeburgis I think it's not just about the cars. They are a necessary component, but I also think it takes the ability to suppress fear, fast reaction times, and accuracy despite the speed on the part of the driver.