Linux Kernel AF_PACKET Use-After-Free vulnerability
https://blogs.securiteam.com/index.php/archives/3484
https://blogs.securiteam.com/index.php/archives/3484
Kernelpop
kernelpop is a framework for performing automated kernel vulnerability enumeration and exploitation
https://github.com/spencerdodd/kernelpop
kernelpop is a framework for performing automated kernel vulnerability enumeration and exploitation
https://github.com/spencerdodd/kernelpop
GitHub
GitHub - spencerdodd/kernelpop: kernel privilege escalation enumeration and exploitation framework
kernel privilege escalation enumeration and exploitation framework - spencerdodd/kernelpop
Bypassing Server-Side Request Forgery filters by abusing a bug in Ruby's native resolver
https://edoverflow.com/2017/ruby-resolv-bug/
https://edoverflow.com/2017/ruby-resolv-bug/
Edoverflow
Bypassing Server-Side Request Forgery filters by abusing a bug in Ruby's native resolver
Summary This is a security advisory for a bug that I discovered in Resolv::getaddresses that enabled me to bypass multiple Server-Side Request Forgery filters. Applications such as GitLab and HackerOne were affected by this bug. The disclosure of all reports…
LOCAL FILE READ VIA XSS IN DYNAMICALLY GENERATED PDF
http://www.noob.ninja/2017/11/local-file-read-via-xss-in-dynamically.html?m=1
http://www.noob.ninja/2017/11/local-file-read-via-xss-in-dynamically.html?m=1
www.noob.ninja
Local File Read via XSS in Dynamically Generated PDF
REDIRECTING TO THE NEW BLOG ... Hello Hunters, This time I am writing about a Vulnerability found in another ...
unicode domain phishing with EvilURL
Demo : https://youtu.be/ug5ZuezbD3c
https://github.com/UndeadSec/EvilURL
Demo : https://youtu.be/ug5ZuezbD3c
https://github.com/UndeadSec/EvilURL