Shoutout to Mole, our @binary.ninja plugin that made these findings possible. Mole finds interesting execution paths in binaries by performing backward slicing on variables in MLIL SSA form, enabling static taint analysis. Mole: github.com/cyber-defenc... Advisory: certvde.com/en/advisorie...
MBS: Several security vulnerabilities in the UGW web GUI
certvde.com
We analyzed how different LLMs and prompt strategies impact bug triage performance in our #BinaryNinja plugin #Mole. TL;DR: Real-world code is far harder than synthetic benchmarks, false positives dominate, stability varies by model, and prompt tuning is strongly model-dependent.
First two unauthenticated RCE CVEs published - Discovered with the help of our #Binja plugin #Mole! 🔗 Advisory: certvde.com/en/advisorie... @ruheabteil.ch 🔗 Mole: github.com/cyber-defenc... More vulnerabilities have been reported - stay tuned for upcoming advisories.
WAGO: Vulnerabilities in WAGO Industrial-Managed Switches
certvde.com
Earlier that year @damianpfammatter.bsky.social and me had time to play with domotics equipment. Finally the patches and advisories were released: www.certvde.com/en/advisorie...
Sauter: Multiple vulnerabilities in SAUTER modulo 6
certvde.com
I just found out my tool was listed as one of the highlights for #BHEU Arsenal! It was a pleasure presenting it, and I hope the audience enjoyed it as much as I did.