Exploiting zero days in abandoned hardware

blog.trailofbits.com
exploiting-zero-days-in-abandoned-hardware

We successfully exploited two discontinued network devices at DistrictCon’s inaugural Junkyard competition in February, winning runner-up for Most Innovative Exploitation Technique. Our exploit chains demonstrate why end-of-life (EOL) hardware poses persistent security risks: when manufacturers stop releasing updates, unpatched vulnerabilities … Read more

Exploiting CI / CD Pipelines for fun and profit

blog.razzsecurity.com
exploiting-ci-/-cd-pipelines-for-fun-and-profit

Introduction In today’s world of fast-paced development and continuous integration, security vulnerabilities can be easy to overlook. Recently, I discovered a severe exploit chain, starting from a publicly exposed .git directory, which led to a full server takeover. This blog … Read more

Exploiting authorization by nonce in WordPress plugins

nowotarski.info

tl;dr: Many WordPress plugins use nonces and nothing else to authorize requests. This often has a potential for exploitation to gain privilege escalation. In this article, I elaborate on WordPress security features connected to nonces and AJAX/REST requests and describe … Read more

Exploiting null-dereferences in the Linux kernel

googleprojectzero.blogspot.com
exploiting-null-dereferences-in-the-linux-kernel

Posted by Seth Jenkins, Project Zero For a fair amount of time, null-deref bugs were a highly exploitable kernel bug class. Back when the kernel was able to access userland memory without restriction, and userland programs were still able to … Read more