Seclog - #46
Cloudflare incident ,Legba, secure HAR sharing, Semgrep's New Rule Syntax, GPT-4 Vision Prompt Injection, Data-bouncing, Drone Warfare, CVSS 4.0 etc.
If you spend too much time thinking about a thing, you'll never get it done. — Bruce Lee
seclinks
Google Cloud Vertex AI - Data Exfiltration Vulnerability Fixed in Generative AI Studio
Post Mortem on Cloudflare Control Plane and Analytics Outage
1466183 - Security: Memory corrupt in v8, leading to RCE - chromium
Enumerate/Bruteforce/Attack All the Things! Presenting Legba
Now available: Building a scalable vulnerability management program on AWS | AWS Security Blog
Shielder - CVE-2023-33466 - Exploiting Healthcare Servers with Polyglot Files
Cascade: CPU Fuzzing via Intricate Program Generation - Computer Security Group
DOM-based race condition: racing in the browser for fun - RyotaK's Blog
Cisco IOS XE CVE-2023-20198: Deep Dive and POC – Horizon3.ai
Stealing OAuth tokens of connected Microsoft accounts via open redirect in Harvest App | eval.blog
Chaos-Sec-Lab: Grand Theft Auto – RF Locks Hacking Flipper-Zero Edition Part 1
Rusty Droid: Under the Hood of a Dangerous Android RAT - K7 Labs