Since 2022 is almost over, I think it’s time to boost some of the most successful articles published on the @hnsec blog this past year.
Let’s begin with our #zyxel #audit series at https://security.humanativaspa.it/tag/zyxel/
Zyxel #firmware extraction and #password analysis
https://security.humanativaspa.it/zyxel-firmware-extraction-and-password-analysis/
Multiple #vulnerabilities in Zyxel zysh
https://security.humanativaspa.it/multiple-vulnerabilities-in-zyxel-zysh/
Zyxel authentication bypass #patch analysis (CVE-2022-0342)
https://security.humanativaspa.it/zyxel-authentication-bypass-patch-analysis-cve-2022-0342/
Useless path #traversals in Zyxel admin interface (CVE-2022-2030)
https://security.humanativaspa.it/useless-path-traversals-in-zyxel-admin-interface-cve-2022-2030/
New (and old) #shellcode samples
https://security.humanativaspa.it/new-and-old-shellcode-samples/
Enjoy!
#zyxel #audit #firmware #password #vulnerabilities #patch #traversals #shellcode