We reverse-engineered the Thermomix TM5 and uncovered vulnerabilities allowing arbitrary code execution, persistence, and secure boot bypass.
Discover our step-by-step breakdown!
www.synacktiv.com/en/publicati...
We reverse-engineered the Thermomix TM5 and uncovered vulnerabilities allowing arbitrary code execution, persistence, and secure boot bypass.
Discover our step-by-step breakdown!
www.synacktiv.com/en/publicati...
aff-wg.org/2025/06/26/b...
I released BOFs with Cobalt Strike 4.1 five years ago. This is some history on the feature and what led to it. My thinking at the time. A few thoughts on current discourse.
aff-wg.org/2025/06/26/b...
I released BOFs with Cobalt Strike 4.1 five years ago. This is some history on the feature and what led to it. My thinking at the time. A few thoughts on current discourse.
mogwailabs.de/en/advisorie...
mogwailabs.de/en/advisorie...
frycos.github.io/vulns4free/2...
frycos.github.io/vulns4free/2...
We found an HTML-to-PDF API allowing file reads and SSRF - then chained it into remote code execution via a Chromium 62 WebView exploit.
👉 Read the full write-up here: neodyme.io/en/blog/html...
We found an HTML-to-PDF API allowing file reads and SSRF - then chained it into remote code execution via a Chromium 62 WebView exploit.
👉 Read the full write-up here: neodyme.io/en/blog/html...
pathonproject.com/zb/?39a1a5b0...
pathonproject.com/zb/?39a1a5b0...
1. Cisco confirmed that their ConfD and NSO products are affected. The ConfD patch is planned for May. These often run on ports 830, 2022, and 2024 versus 22.
sec.cloudapps.cisco.com/security/cen...
1. Cisco confirmed that their ConfD and NSO products are affected. The ConfD patch is planned for May. These often run on ports 830, 2022, and 2024 versus 22.
sec.cloudapps.cisco.com/security/cen...
Scroll down to the end of the following thread and simply copy the provided config to /etc/apparmor.d/burpbrowser 💪
forum.portswigger.net/thread/burp-...
Scroll down to the end of the following thread and simply copy the provided config to /etc/apparmor.d/burpbrowser 💪
forum.portswigger.net/thread/burp-...
- Large number of services affected
- Easy to find / verify
- Hard to actually exploit
Still nice research from the Truffle Security Team.
www.youtube.com/watch?v=gyyt...
- Large number of services affected
- Easy to find / verify
- Hard to actually exploit
Still nice research from the Truffle Security Team.
www.youtube.com/watch?v=gyyt...