Avatar
CrowdCyber
36f403b6512d7e69bb7b89442ce43ffa63cdf6ead2641d7935b239e2ec3557ad
Revolutionizing and Democratizing Cybersecurity

Updated version of System Management Mode backdoor for UEFI based platforms: old dog, new tricks https://github.com/Cr4sh/SmmBackdoorNg

The new In-The-Wild Google Chrome Heap buffer overflow in WebP (CVE-2023-4863) is due to an out-of-bounds write vulnerability within the "BuildHuffmanTable" function https://chromium.googlesource.com/webm/libwebp.git/+/2af26267cdfcb63a88e5c74a85927a12d6ca1d76

Offensive Lua: collection of offensive security scripts written in Lua https://github.com/hackerhouse-opensource/OffensiveLua

Unmasking the Dark Art of Vectored Exception Handling: Bypassing XDR and EDR in the Evolving CyberThreat Landscape https://www.slideshare.net/slideshow/embed_code/key/4BSm2z8iTWxbnG

threat9/routersploit: Exploitation Framework for Embedded Devices https://github.com/threat9/routersploit

BitVM: Any arbitrary computation can now be verified on Bitcoin, with no softfork necessary, in a challenge-response based protocol that can be enforced on-chain. https://bitcoinmagazine.com/technical/the-big-deal-with-bitvm-arbitrary-computation-now-possible-on-bitcoin-without-a-fork

Opensea (Seaport) Exploit Details: Check if your address is affected https://revoketokens.io/exploits/opensea-11-14/