Sam Thomas

@_s_n_t

Director of research at , previously an independent researcher (). Opinions are my own etc..

Menyertai September 2008

Tweet

Anda telah menyekat @_s_n_t

Adakah anda pasti anda mahu melihat Tweet ini? Melihat Tweet tidak akan menyekat @_s_n_t

  1. Tweet Dipinkan
    19 Mei 2018
    Buat asal
  2. Mengetweet Semula
    2 Jan

    Full writeup on exploiting 's Math.expm1 typing bug in V8, from analysis of the bug to RCE. Definitely one of the most difficult bugs I've ever worked on. Enjoy!

    Buat asal
  3. Mengetweet Semula
    3 Jan

    🙈 It feels somewhat funny to start your new year reading a detailed description of how to turn a seemingly trivial bug of yours truly into a serious security exploit in . h/t

    Buat asal
  4. Mengetweet Semula
    3 Dis 2018

    Learn all about Phar Deserializations, a new exploitation technique in PHP that leads to RCE in . Open now the third door of our Calendar 2018

    Day 3 - WooCommerce #2
    Buat asal
  5. Mengetweet Semula
    21 Nov 2018

    This post reviews OGNL mitigation measures in Struts and how they were bypassed in the past, leading up to a CVE-2018-11776 exploit that actually works.

    Buat asal
  6. Mengetweet Semula
    20 Nov 2018

    How a Phar Deserialization can affect your application - step-by-step analysis of a real-world example in the famous phpBB3 forum

    Buat asal
  7. Mengetweet Semula
    15 Nov 2018

    PHPGGC: I merged PharGGC (and some more) ! We now support TAR, ZIP and PHAR file formats, along with polyglot JPEG as described in his talk.

    Buat asal
  8. 13 Nov 2018
    Buat asal
  9. Mengetweet Semula
    12 Nov 2018

    Here are the slides for our 2018 talk on New PHP Exploitation Techniques

    Buat asal
  10. Mengetweet Semula
    2 Nov 2018

    Old School Pwning with New School Tricks :: Vanilla Forums domGetImages getimagesize Unserialize Remote Code Execution Vulnerability:

    Buat asal
  11. Mengetweet Semula
    17 Ogo 2018

    Cool new PHP deserialization vector: trigger unserialize() on attacker controlled data via phar:// stream wrapper a la LFI/XXE

    Buat asal
  12. Mengetweet Semula
    17 Ogo 2018

    Many thanks to for his superb work recording/editing the video, and for hosting a consistently awesome community conference.

    Tunjukkan thread ini
    Buat asal
  13. Mengetweet Semula
    17 Ogo 2018

    [Video] from . yesterday where . showed how to do battle with Next Gen AV with liberal use of copy/paste from StackOverflow. It is shaping up nicely for Red Teaming engagements.

    Buat asal
  14. Mengetweet Semula
    16 Ogo 2018

    The recording of 's talk from is now available to watch here:

    Buat asal
  15. Mengetweet Semula
    16 Ogo 2018

    For today only.. only.. only. *taps mic* At 10am on Track 2 for .. The one, the only. James "hiding in your memory" Williams will be in charge of all that you can see and hear. Go along, he will hide in your memory too.

    Buat asal
  16. Mengetweet Semula
    14 Ogo 2018

    We added a new PHP exploitation technique found by to our RIPS code analysis engine. Find out more about the technique in our blog post:

    Buat asal
  17. 10 Ogo 2018

    The pharggc branch of phpggc is here: thanks to for letting me branch the original

    Buat asal
  18. 10 Ogo 2018

    Seems like the slides and whitepaper from my talk at Black Hat haven't appeared for some reasons - I've put copies here: - thanks for the opportunity it was a privilege

    Buat asal
  19. Mengetweet Semula
    10 Ogo 2018

    Note to friends - It’s totally okay to feel overwhelmed and anxious at Defcon, it’s a lot to have to be on socially, navigate Vegas casinos, Defcon shenanigans, etc Remember to take time for yourself, a breather by the pool, in your room, etc. You do you 😎

    Buat asal
  20. 9 Ogo 2018

    So I guess this is actually happening

    Buat asal
  21. Mengetweet Semula
    2 Ogo 2018

    New blog post showing how to escape the sandbox used by Microsoft Office for MacOS. Hopefully useful for redteams targeting MacOS endpoints

    Buat asal

Pemuatan nampaknya mengambil sedikit masa.

Twitter mungkin melebihi kapasiti atau mengalami gangguan seketika. Cuba sekali lagi atau lawati Status Twitter untuk mendapatkan maklumat lanjut.

    Anda juga mungkin menyukai

    ·