You are here |
www.ghostccamm.com | ||
| | | |
www.sonarsource.com
|
|
| | | | We discovered 3 more code vulnerabilities in the popular GoCD CI/CD system that can be chained by attackers to leak or modify internal code. Learn more in this blog post. | |
| | | |
positive.security
|
|
| | | | Chaining a misconfiguration in IE11/Edge Legacy with an argument injection in a Windows 10/11 default URI handler and a bypass for a previous Electron patch, we developed a drive-by RCE exploit for Windows 10. The main vulnerability in the ms-officecmd URI handler has not been patched yet and can also be triggered through other browsers (requires confirmation of an inconspicuous dialog) and desktop applications that allow URI opening. | |
| | | |
blog.g0tmi1k.com
|
|
| | | | Stripe hosted another 'Capture the Flag' (CTF) event. They previously did one back in February 2012 which contained 6 flags - however they were back ... | |
| | | |
www.jaybosamiya.com
|
|
| | ?? Software security researcher. CTFer (PPP). PhD from CMU. Open source dev. BTech from IIT Roorkee. |