Full Disclosure: by author

27 messages starting Mar 21 23 and ending Mar 06 23
Date index | Thread index | Author index


Adam Gowdiak

Re: Microsoft PlayReady security research Adam Gowdiak (Mar 21)

Andraz Sraka

[CFP] Security BSides Ljubljana 0x7E7 | June 16, 2023 Andraz Sraka (Mar 16)

Andrey Stoykov

Full Disclosure - Fastly Andrey Stoykov (Mar 11)
Full Disclosure - Shopify Application Andrey Stoykov (Mar 11)

Andy Ful

SRP on Windows 11 Andy Ful (Mar 02)

Apple Product Security via Fulldisclosure

APPLE-SA-2023-03-27-2 iOS 15.7.4 and iPadOS 15.7.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-6 tvOS 16.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-1 iOS 16.4 and iPadOS 16.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-9 Studio Display Firmware Update 16.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-7 watchOS 9.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-3 macOS Ventura 13.3 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-5 macOS Big Sur 11.7.5 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-4 macOS Monterey 12.6.4 Apple Product Security via Fulldisclosure (Mar 27)
APPLE-SA-2023-03-27-8 Safari 16.4 Apple Product Security via Fulldisclosure (Mar 27)

Arik Seils

Re: Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is) Arik Seils (Mar 21)

Competition Administrator

Invitation to the World Cryptologic Competition 2023 Competition Administrator (Mar 21)

Erg Noor

OpenBSD overflow Erg Noor (Mar 06)
NetBSD overflow Erg Noor (Mar 02)

Georgi Guninski

Insecure python cgi documentation and tutorials are vulnerable to XSS. Georgi Guninski (Mar 21)

hyp3rlinx

RSA NetWitness Platform EDR / Incorrect Access Control - Code Execution hyp3rlinx (Mar 27)
RSA NetWitness EDR Agent / Incorrect Access Control - Code Execution / CVE-2022-47529 hyp3rlinx (Mar 30)

SEC Consult Vulnerability Lab, Research via Fulldisclosure

SEC Consult SA-20230306-0 :: Multiple Vulnerabilities in Arris DG3450 Cable Gateway SEC Consult Vulnerability Lab, Research via Fulldisclosure (Mar 06)
SEC Consult SA-20230228-0 :: OS Command Injectionin Barracuda CloudGen WAN SEC Consult Vulnerability Lab, Research via Fulldisclosure (Mar 02)

Security Explorations

Re: Microsoft PlayReady security research Security Explorations (Mar 21)

Stefan Kanthak

Defense in depth -- the Microsoft way (part 83): instead to fix even their most stupid mistaskes, they spill barrels of snakeoil to cover them (or just leave them as-is) Stefan Kanthak (Mar 16)
Defense in depth -- the Microsoft way (part 84): (no) fun with %COMSPEC% Stefan Kanthak (Mar 24)

Systems Research Group via Fulldisclosure

[CVE-2023-25355/25356] No fix available - vulnerabilities in CoreDial sipXcom sipXopenfire Systems Research Group via Fulldisclosure (Mar 06)