Wawa Security Links 153
Mardi 07 Avril 2020

ServiceWorkers botnet
Restricted? shell
Ransom in dependencies
Anti Detection 1
Netgear arbitrary CI
Router exploitation
_Update­Button­Location uaf
b64 for shells
ICS pentesting
Hidden Style Obfu
Teampass vulns
Nux McAfee vulns
Baidu Search abuse
Droid OTP overflows
Caching for perfs
PHP Public-Key Encryption
DKIM Canonicalization
Netgear temp fix

Pwd cracking rig
Nux process states
Debugging Your OS
(virtual) destruction*
Droid Voice mail forgery
Syscan360 badge
Nux compromise with SNES
Net TAP Basics
Exploring 2FA
UXSS on Edge
Word int Underflow
LoadUvsTable() BO
ReloadInCompatView uaf
Wine mlw analysis
OS X Skype backdoor
Nagios vulns
Yahoo Stored XSS
Joyent SmartOS vulns
PowerView update
TeleBots analysis

Home routers attacks
Modbus Stager
Remove­Pointer­Pos uaf
Forensics Tools
4 vulns CTF
Final Fantasy RCE 2
BloodHound & CS
Electronic Safe Lock
Firmware RCE
Repo signing bypass
Bad screen locker
Chrome OS exploit
.pfb NULL ptr deref
Compromising Ubuntu
Mimikatz via ClickOnce
Fuzzing TLS
NVIDIA local DoS
CFG bypass with JIT

Chromium & Opera news
PCILeech intro
Prevent PIN usage
Mobile ransoms
DigitalOcean MitM
postMessage XSS
Webmail Persistent XSS
Ropsynth chall
IE9 Move­To­Gap uaf
Whitelist bypass with msiexec
XNU kernel UaF
Goldeneye Petya/Mischa
IE9 Ensure­Size uaf
Chakra mem corruption
IE mem corruption
Sophos SWA vulns
MiKey Nux keylogger
Vbulletin Infections