DLLs & TLS Callbacks, (Fri, Dec 19th)
Xavier’s diary entry “Abusing DLLs EntryPoint for the Fun” inspired me to do...
Read MoreXavier’s diary entry “Abusing DLLs EntryPoint for the Fun” inspired me to do...
Read MoreSince the end of the year is quickly approaching, it is undoubtedly a good time to look back at...
Read MoreI have already talked about various React2Shell exploit attempts we have observed in the last weeks. But new varieties of the exploit are popping up, and the most recent one is using this particular version of the exploit: POST...
Read MoreExploits for React2Shell (CVE-2025-55182) remain active. However, at this point, I would think that any servers vulnerable to the “plain” exploit attempts have already been exploited several times. Here is...
Read MoreWireshark release 4.6.2 fixes 2 vulnerabilities and 5 bugs. The Windows installers now ship with the Visual C++ Redistributable version 14.44.35112. This required a reboot of my laptop. Didier Stevens Senior handler...
Read MoreIntroduction Since as early as November 2025, the finger protocol has been used in ClickFix social...
Read MoreIn the Microsoft Windows ecosystem, DLLs (Dynamic Load Libraries) are PE files like regular...
Read MoreSeveral months ago, I got a Nucbox K8 Plus minicomputer to use as a Proxmox 9 server. At the time...
Read MoreLast year, Kubernetes fixed a command injection vulnerability in the Kubernetes NodeLogQuery feature (%%cve:2024-9042%%) [1]. To exploit the vulnerability, several conditions had to be met: The vulnerable node had to run Windows...
Read MoreThis release addresses 57 vulnerabilities. 3 of these vulnerabilities are rated critical. One vulnerability was already exploited, and two were publicly disclosed before the patch was released. CVE-2025-62221: This privilege...
Read MoreAutoIT3[1] is a powerful language that helps to built nice applications for Windows environments,...
Read More[This is a Guest Diary by Jackie Nguyen, an ISC intern as part of the SANS.edu BACS program] The...
Read More