Tweet
- Tweet
- Tweet & balasan
- Media
Anda telah menyekat @yorickkoster
Adakah anda pasti anda mahu melihat Tweet ini? Melihat Tweet tidak akan menyekat @yorickkoster
-
Results so far: two Mac apps with LPE vulnerabilitieshttps://twitter.com/yorickkoster/status/847915680162734080 …
-
Yorick Koster Mengetweet Semula
-
Yorick Koster Mengetweet Semula
[Blog] Defeating Device Guard: A look into CVE-2017-0007https://enigma0x3.net/2017/04/03/defeating-device-guard-a-look-into-cve-2017-0007/ …
-
Yorick Koster Mengetweet Semula
The new macOS/iOS kernel bug slaughter list by P0's Ian Beer: https://bugs.chromium.org/p/project-zero/issues/list?can=1&q=owner%3Aianbeer+modified-after%3A2017%2F3%2F20&colspec=ID+Type+Status+Priority+Milestone+Owner+Summary&cells=ids …
-
Finally time for security research
#NintendoSwitch#ZeldaBreathoftheWildpic.twitter.com/iHoaGhGm1Z
-
Yorick Koster Mengetweet Semula
It was way too hard, but I figured out how to have different passwords for FDE (FileVault 2) and sudo/login in macOS https://blog.filippo.io/filevault-2-custom-passphrase/ …pic.twitter.com/f6yVbZbD0o
-
Yorick Koster Mengetweet Semula
For now, enjoy Liniaal on your Red Team engagements: https://github.com/sensepost/liniaal …
#redteam -
Yorick Koster Mengetweet Semula
A preview of what I've been working on. Red team tool for rapid generation of cross-platform modular VBA malware code with lots of new TTPspic.twitter.com/wZV6jAAQcY
-
Yorick Koster Mengetweet Semula
Shocking news. Another "next gen" cyber company takes my research (Recon 2015: Hooking Nirvana) and creates FUD https://cybellum.com/doubleagent-taking-full-control-antivirus/ …
-
Yorick Koster Mengetweet Semula
Android O: 'no longer supports SSLv3' and 'HttpsURLConnection does not perform insecure TLS/SSL protocol version fallback'
-
Yorick Koster Mengetweet Semula
How I used
@tiraniddo's Privledge Escalation to get DA (CVE-2017-100) :) Blog Post here: http://blog.inspired-sec.com/archive/2017/03/17/COM-Moniker-Privesc.html … -
Yorick Koster Mengetweet Semula
Stealing
#NetNTLM hashes over internet via regsvr32. Accidentally found this :)pic.twitter.com/JszFB9HPtx
-
Yorick Koster Mengetweet Semula
[Blog] New RCE vector affecting Struts2 applications. If you did not upgrade last week, do it now!https://community.hpe.com/t5/Security-Research/Struts2-046-A-new-vector/ba-p/6949723#.WNAr_RLyvpR …
-
Yorick Koster Mengetweet Semula
This is cool, good evasion technique so far.https://twitter.com/subtee/status/843879112318107649 …
-
Yorick Koster Mengetweet Semula
My bugs fixed by MS in the last Patch Tuesday (Windows Registry, GDI, GDI+, Uniscribe, ICM) are now unrestricted: https://bugs.chromium.org/p/project-zero/issues/list?can=1&q=finder%3Amjurczyk+fixed%3A2017-mar-14 …
-
Yorick Koster Mengetweet Semula
UXSS/SOP bypass on IE: more adventures in a domainless world, thanks to incomplete and non-backported patches.

https://www.brokenbrowser.com/uxss-ie-domainless-world …pic.twitter.com/66UaOQTCGo
-
Yorick Koster Mengetweet Semula
Confirmed! Tencent Security - Team Sniper used a Windows kernel UAF, a VMware infoleak & an uninitialized VMware buffer to go guest-to-host.
Pemuatan nampaknya mengambil sedikit masa.
Twitter mungkin melebihi kapasiti atau mengalami gangguan seketika. Cuba sekali lagi atau lawati Status Twitter untuk mendapatkan maklumat lanjut.