A lovely review and takedown of Microsoft's lackadaisical approach to NTLM issues.
At the very least, please disable outbound SMB from your environment, and get signing/encryption (v2/3) going wherever possible.
Got nerd sniped today by Qualys's 5 Linux LPE 0days
https://www.qualys.com/2024/11/19/needrestart/needrestart.txt
Did a PoC for CVE-2024-10224
The blog post (and tooling) on my Apple kernel extension fuzzing technique that I used to find several AppleAVD AV1 decoder bugs is now public at https://googleprojectzero.blogspot.com/2024/11/simple-macos-kernel-extension-fuzzing.html
Aaaand our QEMU patchset to automatically promote helpers to TCG (using LLVM) is out! 😱😱😱
It has been in the making for quite some time, we’re very proud of it. 💪
Presentation: https://www.youtube.com/watch?v=Gwz0kp7IZPE
Patchset: https://lists.gnu.org/archive/html/qemu-devel/2024-11/msg04035.html
What the absolute fuck: https://yossarian.net/til/post/some-surprising-code-execution-sources-in-bash
In short: [[ "$foo" -eq whatever ]]
in bash can run arbitrary code.
That looks like something that can realistically trigger in a lot of scripts.
(also test -v
, but I barely ever see that one used)
Edit: This also happens in zsh 5.9 (but the referenced variable needs to exist) and mksh
Leveling Up Fuzzing: Finding more vulnerabilities with AI:
https://security.googleblog.com/2024/11/leveling-up-fuzzing-finding-more.html
#fuzzing #google #vulnerabilities #ai #informationsecurity #cybersecurity
It's 2024. People spend more time looking at screens than not-screens. People spend more time in limited wavelength artificial lighting than natural light. Rather than trying to describe "real life", we should just stick to RGB, as "real life" IS mostly just RGB now
My WarCon slides about Ivanti Avalanche are public!
I tried to do some mapping of the attack-surface, show the new auth mechanism and present some research ideas (things I didn't try).
It also shows my first-ever fuzzing and memory corruption experience😆
https://github.com/thezdi/presentations/blob/main/2024_WarCon/Avalanche_WarCon24.pdf
Safety in an Unsafe World - RustConf 2024 - How to move Rust beyond memory safety to guarantee freedom from any class of bugs
https://www.youtube.com/watch?v=Ba7fajt4l1M
Discussions: https://discu.eu/q/https://www.youtube.com/watch?v=Ba7fajt4l1M