Tarnkappe.info · @tarnkappeinfo
1651 followers · 3884 posts · Server social.tchncs.de
Ciourte Piaille · @ciourte
54 followers · 219 posts · Server piaille.fr

Interesting "Stealing passwords from infosec Mastodon - without bypassing CSP" by @gaz.
portswigger.net/research/steal

It says at the end that the vulnerability was only exploitable in the fork (used by that instance), not itself.
Still, despite the slightly misleading title, that's some good research, and an interesting well-written article. 😄

#glitch #mastodon #InfoSec #cybersecurity #codeinjection #WebSecurity

Last updated 2 years ago

neatchee · @neatchee
239 followers · 400 posts · Server mastodon.gamedev.place

Hey /#appsec peeps...

Ever wanted to work on ? :) Cheat devs are using mods to do hard-to-detect and in-memory modification.

needs a low-level security engineer to help develop strategies that can be implemented in game clients running on compromised hardware to detect, mitigate, and run psyops on cheaters and cheat devs.

If you like adversarial work, it's pretty awesome. Come talk to me :)

#re #reverseengineering #gamedev #security #bungie #codeinjection #hypervisor #videogames #infosec

Last updated 2 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online
ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online
ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online

Citrix Bugs Allow Unauthenticated Code Injection, Data Theft - Admins should patch their Citrix ADC and Gateway installs immediately. more: threatpost.com/citrix-bugs-all -2020-8187 -2020-8190 -2020-8191 -2020-8193 -2020-8194 -2020-8195 -2020-8196 -2020-8197 -2020-8198 -2020-8199

#adc #cve #codeinjection #denialofservice #vulnerabilities #securityadvisory #criticaladvisory #informationdisclosure

Last updated 4 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online