Day[0]
dayzerosec
Categorias: Tecnología
Escuchar el último episodio:
A quick episode this week, which includes attacking VS Code with ASCII control characters, as well as a referrer leak and SCIM hunting.
Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/282.html
[00:00:00] Introduction
[00:00:57] Attacking Hypervisors - Training Update
[00:06:20] Drag and Pwnd: Leverage ASCII characters to exploit VS Code
[00:12:12] Full Referer URL leak through img tag
[00:17:52] SCIM Hunting - Beyond SSO
[00:25:17] Breaking the Sound Barrier Part I: Fuzzing CoreAudio with Mach Messages
Podcast episodes are available on the usual podcast platforms:
-- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063
-- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt
-- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz
-- Other audio platforms can be found at https://anchor.fm/dayzerosec
You can also join our discord: https://discord.gg/daTxTK9
Episodios anteriores
-
282 - Exploiting VS Code with Control Characters Mon, 12 May 2025
-
281 - Mitigating Browser Hacking - Interview with John Carse (SquareX Field CISO) Tue, 22 Apr 2025
-
280 - Pulling Gemini Secrets and Windows HVPT Wed, 16 Apr 2025
-
279 - Session-ception and User Namespaces Strike Again Tue, 01 Apr 2025
-
278 - Extracting YouTube Creator Emails and Spilling Azure Secrets Mon, 24 Mar 2025
-
277 - ESP32 Backdoor Drama and SAML Auth Bypasses Mon, 17 Mar 2025
-
276 - Exploiting Xbox 360 Hypervisor and Microcode Hacking Wed, 12 Mar 2025
-
275 - Path Confusion and Mixing Public/Private Keys Mon, 03 Mar 2025
-
274 - ZDI's Triaging Troubles and LibreOffice Exploits Tue, 25 Feb 2025
-
273 - Recycling Exploits in MacOS and Pirating Audiobooks Tue, 18 Feb 2025
-
272 - Top 10 Web Hacking Techniques and Windows Shadow Stacks Wed, 12 Feb 2025
-
271 - Unicode Troubles, Bypassing CFG, and Racey Pointer Updates Tue, 04 Feb 2025
-
270 - Deanonymization with CloudFlare and Subaru's Security Woes Mon, 27 Jan 2025
-
269 - Excavating Exploits and PHP Footguns Mon, 20 Jan 2025
-
268 - WhatsApp vs. NSO and CCC Talks Tue, 14 Jan 2025
-
267 - Buggy Operating Systems Are Coming to Town Mon, 16 Dec 2024
-
266 - Machine Learning Attacks and Tricky Null Bytes Mon, 09 Dec 2024
-
265 - A Windows Keyhole and Buggy OAuth Mon, 02 Dec 2024
-
264 - Linux Is Still a Mess and Vaultwarden Auth Issues Tue, 26 Nov 2024
-
263 - FortiJump Higher, Pishi, and Breaking Control Flow Flattening Mon, 18 Nov 2024
-
262 - Static Analysis, LLMs, and In-The-Wild Exploit Chains Mon, 11 Nov 2024
-
261 - Attacking Browser Extensions and CyberPanel Mon, 04 Nov 2024
-
260 - Hardwear.IO NL, DEF CON 32, and Filesystem Exploitation Tue, 29 Oct 2024
-
259 - Zendesk's Email Fiasco and Rooting Linux with a Lighter Wed, 16 Oct 2024
-
258 - Summer Recap: Phrack, Off-by-One, and RCEs Tue, 08 Oct 2024
-
257 - Attack of the CUPS and Exploiting Web Views via HSTS Mon, 30 Sep 2024
-
256 - Future of the Windows Kernel and Encryption Nonce Reuse Mon, 23 Sep 2024
-
255 - Iterating Exploits & Extracting SGX Keys Mon, 16 Sep 2024
-
254 - Memory Corruption: Best Tackled with Mitigations or Safe-Languages Fri, 17 May 2024
-
253 - [discussion] A Retrospective and Future Look Into DAY[0] Fri, 19 Apr 2024
-
252 - [binary] Bypassing KASLR and a FortiGate RCE Wed, 20 Mar 2024
-
251 - [bounty] RCE'ing Mailspring and a .NET CRLF Injection Tue, 19 Mar 2024
-
250 - [binary] Future of Exploit Development Followup Wed, 13 Mar 2024
-
249 - [bounty] libXPC to Root and Digital Lockpicking Tue, 12 Mar 2024
-
248 - [binary] Binary Ninja Free and K-LEAK Wed, 06 Mar 2024
-
247 - [bounty] Hacking Google AI and SAML Tue, 05 Mar 2024
-
246 - [binary] Rust Memory Corruption??? Wed, 28 Feb 2024
-
245 - [bounty] A PHP and Joomla Bug and some DOM Clobbering Tue, 27 Feb 2024
-
244 - [binary] Linux Burns Down CVEs Wed, 21 Feb 2024
-
243 - [bounty] GhostCMS, ClamAV, and the Top Web Hacking Techniques of 2023 Tue, 20 Feb 2024
-
242 - [binary] kCTF Changes, LogMeIn, and wlan VFS Bugs Wed, 14 Feb 2024
-
241 - [bounty] The End of a DEFCON Era and Flipper Zero Woes Tue, 13 Feb 2024
-
240 - [binary] The Syslog Special Wed, 07 Feb 2024
-
239 - [bounty] Public Private Android Keys and Docker Escapes Tue, 06 Feb 2024
-
238 - [binary] Busted ASLR, PixieFail, and Bypassing HVCI Wed, 31 Jan 2024
-
237 - [bounty] Reborn Homograph Attacks and Ransacking Passwords Tue, 30 Jan 2024
-
236 - [binary] Bypassing Chromecast Secure-Boot and Exploiting Factorio Wed, 17 Jan 2024
-
235 - [bounty] A GitLab Account Takeover and a Coldfusion RCE Tue, 16 Jan 2024
-
234 - [binary] Allocator MTE, libwebp, and Operation Triangulation Wed, 10 Jan 2024
-
233 - [bounty] Spoofing Emails, PandoraFMS, and Keycloak  Tue, 09 Jan 2024