Sandeep Kamble (sensfrx.ai)

@sandeepk.bsky.social

Now that this WordPress vulnerability has been actively exploited in the wild for the past 8 hours, has anyone successfully used an LLM to build a full RCE exploit chain? I had hard time but with some predefined primitives I was able to make it work after spending some time.

PHP symlink exploit, anyone? 😅 Was checking PTaaS platform & saw one of our pentesters found an exploit allowing access to other tenants sensitive data on cloud hosting! Yep, this reminds old symlink trick for reading config.php! Shared hosting has come far. www.linkedin.com/feed/update/...

Sandeep Kamble on LinkedIn: PHP symlink exploit, anyone? So, I usually routinely check BugDazz…

PHP symlink exploit, anyone? So, I usually routinely check BugDazz PTaSS platform, and one of our pentesters found a vulnerability allowing access to other…

linkedin.com

[Friday CVE Analysis Drop] We tackled an interesting CVE, reverse engineering it to show how it works Despite many challenges including selfsigned certificates and brute-forcing with a Python script we completed a detailed analysis of PaperCut #cybersecurity blog.securelayer7.net/analysis-of-...

Analysis of CVE-2023-39143 – PaperCut RCE

Overview CVE-2023-39143 is a path traversal vulnerability found in Papercut MF/NG, a print management solution. This particular CVE only affects Windows installations prior to version 22.1.3. With...

blog.securelayer7.net

Operators of Malware-as-a-Service needs to find innovative way to takeover accounts. Chromium introduces Device Bound Session Credentials (DBSC) and where stolen cookies are worthless to attackers and one more step for privacy. blog.chromium.org/2024/04/figh...

Fighting cookie theft using device bound sessions

Cookies – small files created by sites you visit – are fundamental to the modern web. They make your online experience easier by saving bro...

blog.chromium.org