Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

Spring4Shell: The zero-day RCE in the Spring Framework explained- 818

Brian Vermeer - SynkPosted 4 Years Ago

CVE-2022-25372: Local Privilege Escalation in Pritunl VPN Client- 817

David Yesland - Rhino SecurityPosted 4 Years Ago

The LI.FI Hack Explained- 816

PNM & Narya LabsPosted 4 Years Ago

Public Key Security Vulnerability and Mitigation- 815

Tom Preston-Werner - GithubPosted 4 Years Ago

FORCEDENTRY: Sandbox Escape - 814

Ian Beer & Samuel Grob - Project Zero (P0)Posted 4 Years Ago

Abusing Arbitrary File Deletes to Escalate Privilege and Other Great Tricks - 813

Simon Zuckerbraun - ZDIPosted 4 Years Ago

Chrome: heap-buffer-overflow in chrome_pdf::PDFiumEngine::RequestThumbnail- 812

Sergei Glazunov - Google Project Zero (P0)Posted 4 Years Ago

TLStorm- 811

Ben Seri & Barak Hadad - ArmisPosted 4 Years Ago

AMI UsbRt - Six years later, firmware attack vector still affect millions of enterprise devices- 810

efiXplorer Team - BinarlyPosted 4 Years Ago

Documenting Sony Memory Stick- 809

Dmitry GrinbergPosted 4 Years Ago