Us 15 yason understanding the attack surface and attack resilience of project spartans new edge html rendering engine
Attacking ECMAScript Engines with Redefinition
Posted by Natalie Silvanovich = function () { return n; } ECMAScript has a property where almost all functions and variables can be dyn...
Motivation
A look at how the Snifflab test environment works to collect packets and man-in-the-middle HTTPS communications for easy security research.
Bugzilla CVE-2015-4499: All Your Bugs Are Belong To Us
http://goo.gl/4Ckrxm
http://goo.gl/BMfYJF
https://goo.gl/oaM7Mu
HTML Compiler - Remote Code Execution. CVE-2014-6332. Remote exploit for Windows platform
Remote Code Execution (RCE) on Microsoft's 'signout.live.com'
shell-on-earth.pdf
Deanonymizing Windows users and capturing Microsoft and VPN accounts — Medi
Long ago, when computers were single core and worked perfectly with 256MB RAM and Windows networks were common, Microsoft guys though of a…
Опасное видео: как я нашёл уязвимость в видеохостингах и не умер через 7 дн
Всем привет! Я Максим Андреев, программист бэкенда Облака Mail.Ru. В свободное время я люблю искать баги. В сегодняшнем посте я хочу рассказать об одной...
Detecting headless browsers
This presentation by Sergey Shekyan and Bei Zhang discusses offensive use of headless browsers tools, and how to counteract them in practice.
.:: Phrack Magazine ::.
Phrack staff website.
Jurczyk windows metafile_pacsec_v2
Windows Metafiles An Analysis of the EMF A1ack Surface & Recent Vulnerabili;es Mateusz “j00ru” Jurczyk PacSec, Tokyo 2016
A simple way for detection the remote user's antivirus
A simple way for detection the remote user's antivirus :
What are malicious USB keys and how to create a realistic one?
This blog post shows how to create a reliable and realistic-looking malicious USB key that can be used in a drop attack.
Palo Alto Networks Discovers Two Adobe Reader Privileged JavaScript Zero-Da
We recently discovered two zero-day vulnerabilities in Adobe Reader. Adobe has since released a patch (on October 6, 2016) to fix these vulnerabilities, which are named CVE-2016-6957 and CVE-2016-6958. These vulnerabilities could allow an attacker to compromise Adobe Reader by bypassing restrictions on JavaScript API execution (CVE-2016-6957) and security provisions that prevent arbitrary execution of scripts such as those written in Python (CVE-2016-6957). In this blog post, I will provide a technical walkthrough of these vulnerabilities, how they can be exploited, and how Palo Alto Networ...
Issue 865 - project-zero - Windows: NtLoadKeyEx User Hive Attachment Point
KernelMode.info • View topic - UACMe - Defeating Windows User Account Contr
Exploit Adobe Flash Under the Latest Mitigation
GreenDog's blog: Remote detection of a user's AV using Flash
Attention, the method works not as well as it should There is a possibility to find out a vendor of AV installed on a user's PC. Remotely and without detection from the user. This information could be useful for us if we want to attack the user. The method is based on two main features. The first feature. The most of modern AVs can detect malware analyzing network traffic. Usually, http and smtp/pop3/imap protocols are analyzed. However, as TLS is used more and more often, then an AV actually has to perform a man in the middle attack against a user application and a remote server. To byp...
woot16-paper-blackthorne_update.pdf
1608.01725.pdf
How I Could Steal Money from Instagram, Google and Microsoft – Arne Swinnen
The Scriptless Scriptlet - Or how to execute JavaScript from CSS in MSIE11
The Scriptless Scriptlet - Or how to execute JavaScript from CSS in MSIE11 without using Scripts · GitHub
PATCH ANALYSIS OF CVE-2016-0189 | THEORI
Theori, Inc.
CVE-2015-2545 ITW EMET Evasion
Sometime back, FireEye discovered a 0day attack using docx file format Two for One: Microsoft Office Encapsulated PostScript and Wind...
WSC, JSRAT and WMI Backdoor | WooYun Knowledge
Defeating FDE (BitLocker) through Windows Authentication Bypass
From Crash to Exploit: CVE-2015-6086 - Out of Bound Read/ASLR Bypass - paya
From Crash to Exploit: CVE-2015-6086 - Out of Bound Read/ASLR Bypass