GMO Flatt Security Inc. (@flatt_sec_en) 's Twitter Profile
GMO Flatt Security Inc.

@flatt_sec_en

A cyber security company based in Tokyo, Japan. We provide security assessment, penetration test services and a cloud security automation. JP: @flatt_security

ID: 1397489026278461441

linkhttps://flatt.tech/en calendar_today26-05-2021 09:47:33

44 Tweet

593 Followers

1 Following

RyotaK (@ryotkak) 's Twitter Profile Photo

However, the requirement for this vulnerability to be exploitable is unlikely, which fairly reduces its impact. If your Next.js application fetches a third-party website server-side, I recommend upgrading to the latest version! github.com/vercel/next.js…

GMO Flatt Security Inc. (@flatt_sec_en) 's Twitter Profile Photo

New blog out! Think XSS is a thing of the past with today's Web frameworks? Think again! Our new article by canalun breaks down why this vulnerability persists and offers insights on how to stay secure. Read it here! flatt.tech/research/posts…

RyotaK (@ryotkak) 's Twitter Profile Photo

I reported an arbitrary code execution in Unity Runtime, which affects all versions starting from Unity 2017.1. As the vulnerability can be exploited without specific usage, I strongly encourage developers to patch. Technical details below: flatt.tech/research/posts…

GMO Flatt Security Inc. (@flatt_sec_en) 's Twitter Profile Photo

Our researcher RyotaK RyotaK found an Arbitrary Code Execution vulnerability in the Unity Runtime (CVE-2025-59489). We urge all Unity developers to download updated versions, recompile their projects, and republish immediately. flatt.tech/research/posts…

GMO Flatt Security Inc. (@flatt_sec_en) 's Twitter Profile Photo

Our Co-CTO and our pentesting AI agent, Takumi, have discovered arbitrary code execution vulnerabilities in 7-Zip. CVE-2025-11001: zerodayinitiative.com/advisories/ZDI… CVE-2025-11002: zerodayinitiative.com/advisories/ZDI… Please refer to the advisories and take appropriate measures.