Explore >> Select a destination


You are here

positive.security
| | palant.info
11.4 parsecs away

Travel
| | Looking into Xunlei Accelerator, I discovered a number of flaws allowing remote code execution from websites or local network. It doesn't look like security was considered when designing this application.
| | parsiya.net
9.8 parsecs away

Travel
| |
| | statuscode.ch
11.4 parsecs away

Travel
| | Recently I took a look atAtom, a text editor by GitHub. With a little bit of work, I was able to chain multiple vulnerabilities in Atom into an actual Remote Code Execution. The vulnerabilities have been fixed in the1.21.1 release on October 12th, 2017after I reported it via theirHackerOne program. In case you want to...
| | countuponsecurity.com
88.6 parsecs away

Travel
| Continuing with the analysis of the RIG exploit kit, let's start where we left off and understand the part that contains the malicious Adobe Flash file.We saw, in the last post, that the RIG exploit kit landing page contains heavily obfuscated and encoded JavaScript. One of the things the JavaScript code does is verifying if...