Daniel Santos (@bananabr) 's Twitter Profile
Daniel Santos

@bananabr

Yet another hacker wannabe

ID: 53379746

linkhttps://vovohelo.medium.com/ calendar_today03-07-2009 13:08:17

401 Tweet

418 Takipçi

397 Takip Edilen

Márcio Almeida (@marcioalm) 's Twitter Profile Photo

This is the technical writeup in how we found and exploited the CVE-2022-41343 (RCE via Phar Deserialisation in Dompdf <= v2.0.0). We presented this vulnerability at Ruxmon September and we are finally doing the public disclosure! I hope you like it ;-) tantosec.com/blog/cve-2022-…

x86matthew (@x86matthew) 's Twitter Profile Photo

SharedMemUtils - A simple tool to automatically find vulnerabilities in shared memory objects (commonly used for IPC in Windows services) This tool immediately uncovered potential exploitation routes in both Nvidia and Dell Audio services on my system. x86matthew.com/view_post?id=s…

SharedMemUtils - A simple tool to automatically find vulnerabilities in shared memory objects (commonly used for IPC in Windows services)

This tool immediately uncovered potential exploitation routes in both Nvidia and Dell Audio services on my system.

x86matthew.com/view_post?id=s…
0xor0ne (@0xor0ne) 's Twitter Profile Photo

If you're interested in bluetooth low level hacking take a look at this cool project by Matheus Eduardo Garbelini (Matheus Eduardo Garbelini) Active Bluetooth BR/EDR Sniffer/Injector: github.com/Matheus-Garbel… #bluetooth #esp32 #espressif #hacking #infosec

If you're interested in bluetooth low level hacking take a look at this cool project by Matheus Eduardo Garbelini (<a href="/MatheusGarbelin/">Matheus Eduardo Garbelini</a>)

Active Bluetooth BR/EDR Sniffer/Injector: github.com/Matheus-Garbel…

#bluetooth #esp32 #espressif #hacking #infosec
Daniel Santos (@bananabr) 's Twitter Profile Photo

I just published a write-up about my brief participation in the latest edition of #diceCTF. vovohelo.medium.com/capturing-the-…

James Kettle (@albinowax) 's Twitter Profile Photo

I'm thrilled to announce "Smashing the State Machine: the True Potential of Web Race Conditions" will premiere at Black Hat' #BHUSA this August! Looking forward to sharing some exploits that blew my mind! blackhat.com/us-23/briefing…

Daniel Santos (@bananabr) 's Twitter Profile Photo

I just published a new process injection tool. You read about it in my new ".NET Threadless Process Injection" article link.medium.com/H0RMsm8CiHb

Silky (@s1lky_1337) 's Twitter Profile Photo

In this article I show how I modified Daniel Santos's JIT-compiled method hook tool, CLR-Injector, to perform shellcode injection in combination with Module Stomping, Memory Encryption and more. medium.com/@S.1.l.k.y/pro…

James Forshaw (@tiraniddo) 's Twitter Profile Photo

Just because you get access denied accessing a folder, it doesn't mean you can't get access. A quick look at bypassing the security on the WindowsApps folder. tiraniddo.dev/2024/06/workin…