Nicky Bloor

5K posts

Nicky Bloor banner
Nicky Bloor

Nicky Bloor

@nickstadb

Coder, hacker, infosec researcher, adrenaline junkie. Once hiked Ben Nevis, Scafell Pike, and Snowdon in 22h 48m. Not a snake oil peddler.

Manchester, UK Katılım Eylül 2009
673 Takip Edilen2K Takipçiler
Nicky Bloor
Nicky Bloor@nickstadb·
@Random_Robbie @LargeCardinal All good here bud. Was hoping to cross paths at SteelCon but it clashed with Oasis. No idea what happened with BSides Liverpool either. You good bud?
English
1
0
0
42
Nicky Bloor
Nicky Bloor@nickstadb·
Deserialization, reflection, and memory-resident shellcode execution come to mind with PrecodeFixupThunk being the first step of the JIT mechanism (hat-tip to @_xpn_ for weird ways to run unmanaged code in .NET!). Anyone observed this, or have any more specific suggestions?
English
1
0
0
188
Nicky Bloor
Nicky Bloor@nickstadb·
Are there any funky .NET exploitation techniques that might lead to a crash in clr!PrecodeFixupThunk?
English
1
0
0
150
Josh G.
Josh G.@NEXUS2345·
Hi everyone, I'm interested in a @Steel_Con ticket if anyone has one available. Please send me a DM or reply. Will pay face value. Thanks!
English
2
0
0
99
Random Robbie
Random Robbie@Random_Robbie·
@nickstadb @LargeCardinal Boooooooooooooooooooo your like a staple friend there normally! We will have to meet up at some point at another con!
English
1
0
2
35
Nicky Bloor
Nicky Bloor@nickstadb·
@vysecurity If it ain't snake oil on LinkedIn, it's some bullshit CVE with a 10.0 CVSS score that can only be exploited once you've already significantly compromised the target 🤔
English
0
0
1
79
Vincent Yiu
Vincent Yiu@vysecurity·
Is it just me or there’s just more and more bullshit joining the cyber community in general? Every other LinkedIn post these days is just a sales guy with misunderstanding of topics and spreading bullshit?
English
2
0
6
937
Nicky Bloor
Nicky Bloor@nickstadb·
@ethicalhack3r Cheers Ryan! It's tough for sure. Definitely need to get the training miles in - and hopefully not injure yourself or be floored by flu 😅 Half marathon is a nice distance IMO but if you push yourself there you're definitely in danger of being tempted to do a full marathon.
English
0
0
2
39
Ryan Dewhurst
Ryan Dewhurst@ethicalhack3r·
@nickstadb Congratulations! Farthest I’ve run is 16k, couldn’t imagine how hard a marathon is!
English
1
0
1
43
Nicky Bloor
Nicky Bloor@nickstadb·
That's another one ticked! Did not go as well as I'd have liked but it was a brutal one today. The heat took a lot of people out. Hope everyone's ok and congrats to the 92k or so marathoners today whether at London or Manchester! #ManchesterMarathon
Nicky Bloor tweet media
English
1
0
5
344
Nicky Bloor
Nicky Bloor@nickstadb·
In other news - my @Steel_Con talk has been accepted! Looking forward to it. Catch you there if you're going!
English
2
3
13
912
Nicky Bloor
Nicky Bloor@nickstadb·
CVE database is becoming a joke TBH, when things like CVE-2025-24859 are published with a CVSS score of 10.0 - To exploit this vulnerability you first need to obtain a valid session token, then you only maintain access to the corresponding user account... cve.org/CVERecord?id=C…
English
2
1
9
1.8K
Nicky Bloor
Nicky Bloor@nickstadb·
@TheHackersNews I make that a 2.3 under CVSSv4.0, maybe even 2.1 - an attacker first needs to compromise an account, then they only maintain access to the account they already compromised. Who's reviewing/approving this stuff?! #CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N" target="_blank" rel="nofollow noopener">first.org/cvss/calculato… 🤔
English
0
0
1
274
The Hacker News
The Hacker News@TheHackersNews·
🚨 Apache Roller Hit by 10.0 CVSS Flaw! Old sessions stay active even after a password change (CVE-2025-24859). Hackers can keep access silently. All versions ≤6.1.4 affected. 👉 Full details: thehackernews.com/2025/04/critic… 🔒 Fixed in v6.1.5. Patch now.
English
6
49
80
34.5K
Nicky Bloor
Nicky Bloor@nickstadb·
It's time! Picked this one up about 9 years ago, not long after I had my first Smog Rocket @BeavertownBeer !
Nicky Bloor tweet media
English
0
1
0
380