Gaetan retweetledi

Expecting to struggle finding a gadget chain in WordPress Core during an assessment when devs suddenly decided to make it easy : fenrisk.com/publications/b…
English
Gaetan
269 posts

@_mabote_
AppSec researcher @SonarSource | Former pentester 🥾 | @[email protected]


⚠️ Unauthenticated RCE vulnerability in JetBrains TeamCity (CVE-2023-42793) ⚠️ Attackers could steal source code and poison build artifacts to launch supply chain attacks: sonarsource.com/blog/teamcity-… #appsec #security #vulnerability




🥑 The Hazards of Technological Variety and Parallelism: An Avocado Nightmare, by Stefan Schiller (@scryh_)















Success! @Synacktiv used a TOCTOU bug to escalate privileges on Apple macOS. They earn $40,000 and 4 Master of Pwn points. #Pwn2Own #P2OVancouver


