[CVE49] Microsoft Windows LNK Remote Code Execution Vulnerability - CVE-2020-1299
https://blog.vincss.net/2020/06/cve49-microsoft-windows-lnk-remote-code-execution-vuln-cve-2020-1299-eng.html
https://blog.vincss.net/2020/06/cve49-microsoft-windows-lnk-remote-code-execution-vuln-cve-2020-1299-eng.html
FuZZan: Efficient Sanitizer Metadata Design for Fuzzing
Source: https://github.com/HexHive/FuZZan
Article: http://hexhive.epfl.ch/publications/files/20ATC.pdf
Source: https://github.com/HexHive/FuZZan
Article: http://hexhive.epfl.ch/publications/files/20ATC.pdf
GitHub
GitHub - HexHive/FuZZan: FuZZan: Efficient Sanitizer Metadata Design for Fuzzing
FuZZan: Efficient Sanitizer Metadata Design for Fuzzing - HexHive/FuZZan
MMS Exploit Part 1: Introduction to the Samsung Qmage Codec and Remote Attack Surface
https://googleprojectzero.blogspot.com/2020/07/mms-exploit-part-1-introduction-to-qmage.html
https://googleprojectzero.blogspot.com/2020/07/mms-exploit-part-1-introduction-to-qmage.html
Blogspot
MMS Exploit Part 1: Introduction to the Samsung Qmage Codec and Remote Attack Surface
Posted by Mateusz Jurczyk, Project Zero This post is the first of a multi-part series capturing my journey from discovering a vulnerable...
Linux on RISC-V (RV Summit 2020).pdf
7.4 MB
”Linux on RISC-V” by Drew Fustini
https://docs.google.com/presentation/d/1mD-yPd-zB-DNXVTTNWGd22EZuSi9_4hcJGHYzrDQLjU/edit#slide=id.ga1453b7d9f_0_102
●Recent work for debug, trace and security
○eBPF JIT for RV64 and RV32
○kprobes and kretprobes
○kexec and kdump
○syszcaller fuzzing
https://docs.google.com/presentation/d/1mD-yPd-zB-DNXVTTNWGd22EZuSi9_4hcJGHYzrDQLjU/edit#slide=id.ga1453b7d9f_0_102
●Recent work for debug, trace and security
○eBPF JIT for RV64 and RV32
○kprobes and kretprobes
○kexec and kdump
○syszcaller fuzzing
UAFuzz - Binary-level Directed Fuzzing For Use-After-Free Vulnerabilities
https://www.kitploit.com/2020/11/uafuzz-binary-level-directed-fuzzing.html
https://www.kitploit.com/2020/11/uafuzz-binary-level-directed-fuzzing.html
KitPloit - PenTest & Hacking Tools
UAFuzz - Binary-level Directed Fuzzing For Use-After-Free Vulnerabilities
A Python3 Module To Assist In Fuzzing Web Applications
https://www.kitploit.com/2020/11/py3webfuzz-python3-module-to-assist-in.html
https://www.kitploit.com/2020/11/py3webfuzz-python3-module-to-assist-in.html
KitPloit - PenTest & Hacking Tools
Py3Webfuzz - A Python3 Module To Assist In Fuzzing Web Applications
Academic papers related to fuzzing, binary analysis, and exploit dev
https://github.com/0xricksanchez/paper_collection
https://github.com/0xricksanchez/paper_collection
GitHub
GitHub - 0xricksanchez/paper_collection: Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to…
Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read - 0xricksanchez/paper_collection
RESTler finds security and reliability bugs through automated fuzzing
https://www.microsoft.com/en-us/research/blog/restler-finds-security-and-reliability-bugs-through-automated-fuzzing/
https://www.microsoft.com/en-us/research/blog/restler-finds-security-and-reliability-bugs-through-automated-fuzzing/
Microsoft Research
RESTler finds security and reliability bugs through automated fuzzing - Microsoft Research
Microsoft researchers open source the first stateful REST API fuzzing tool designed to make cloud services more reliable and secure. Learn how RESTler automatically tests and finds security bugs through their REST APIs.