CVE-2022-28736 - Exploiting the Use-After-Free Vulnerability in GRUB2's `chainloader` Command
In June 2022, a critical use-after-free vulnerability was disclosed in GRUB2, the widely-used bootloader for Linux systems. This post breaks down CVE-
CVE-2023-3648 - Crashing Wireshark with Kafka Traffic – How a Simple Packet Can Stop Your Network Analysis
Wireshark is a must-have tool for anyone dealing with network packets, whether you’re troubleshooting issues, doing security research, or reverse engineering protocols. But
CVE-2023-36884 - Breaking Down the Latest Microsoft Office Remote Code Execution Vulnerability
Microsoft products like Windows and Office touch the lives of millions worldwide, both at home and in the workplace. When security issues emerge, they can
CVE-2023-29347 - Windows Admin Center Spoofing Vulnerability Explained with Example Exploit
On May 2023, Microsoft disclosed a security flaw in Windows Admin Center – identified as CVE-2023-29347. This vulnerability could let an attacker spoof authentication
CVE-2023-33156 - Deep Dive Into a Microsoft Defender Elevation of Privilege Vulnerability
In June 2023, security researchers discovered and reported a serious vulnerability in Microsoft Defender—CVE-2023-33156. This flaw allows a local attacker to elevate
Episode
00:00:00
00:00:00