Resources

People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!

Windows 10 RCE: The exploit is in the link- 703

Fabian Braulen & Lukas Euler - Positive SecurityPosted 4 Years Ago

Apache Log4j allows insecure JNDI lookups - 702

CMUPosted 4 Years Ago

Looking for vulnerabilities in MediaTek audio DSP- 701

Checkpoint - Slava MakkaveevPosted 4 Years Ago

A deep dive into an NSO zero-click iMessage exploit: Remote Code Execution - 700

Ian Beer & Samuel Groß - Project Zero (P0)Posted 4 Years Ago

Exploring Container Security: A Storage Vulnerability Deep Dive - 699

Fabricio Voznika & Mauricio Poppe - Google Cloud Posted 4 Years Ago

Bypassing Box’s Time-based One-Time Password MFA- 698

Tal Peleg - VaronisPosted 4 Years Ago

CSS injection via link tag whitelisted-domain bypass- 697

zonduu - GlassDoorPosted 4 Years Ago

Whispers Among the Stars- 696

James Pavur - DEF CON Safe ModePosted 4 Years Ago

KVM: SVM: out-of-bounds read/write in sev_es_string_io- 695

fwilhelm - Project Zero (P0) Posted 4 Years Ago

Apple ColorSync: use of uninitialized memory in CMMNDimLinear::Interpolate- 694

mjurczykPosted 4 Years Ago