Wpis użytkownika konik_polanowy w Hydepark
konik_polanowyFenomen
6piorunówLink on Github --> https://github.com/Nieuport/news-and-links/blob/gh-pages/docs/2026.01.21.md
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver – CVE-2025-53149 - https://www.crowdfense.com/cve-2025-53149-windows-ksthunk-heap-overflow/
Unleashing Assembly for Shellcode Execution - https://redops.at/en/blog/shell-we-assemble-unleashing-x86-inline-assembly-for-shellcode-execution
Hacking India’s largest automaker: Tata Motors - https://eaton-works.com/2025/10/28/tata-motors-hack/
Introducing Early Cascade Injection: From Windows Process Creation to Stealthy Injection - https://www.outflank.nl/blog/2024/10/15/introducing-early-cascade-injection-from-windows-process-creation-to-stealthy-injection/
Running code in a PAX Credit Card Payment Machine (part1) - https://lucasteske.dev/2025/09/running-code-in-pax-machines
Komentarze (1)
Ten ostatni przypadek na podobnym diwajsie juz widziałem - zostało to zgłoszone do producenta ten zamiast wypłacić bug-bounty kazał spierdlać i zabronił ingerencji w diwajs pod groźba kary. ( ͡° ͜ʖ ͡°)