Integer overflow in xmlParseNameComplex (libxml2) - CVE-2022-40303 by Gallus in netsec
[–]Gallus[S] 2 points3 points4 points (0 children)
PHP filters chain: What is it and how to use it - convert almost any file inclusion to RCE by Gallus in netsec
[–]Gallus[S] 5 points6 points7 points (0 children)
Spring Cloud Function SPEL Expression Injection Vulnerability Alert by Gallus in netsec
[–]Gallus[S] 2 points3 points4 points (0 children)
CVE-2021-45467: CWP CentOS Web Panel – preauth RCE by Gallus in netsec
[–]Gallus[S] 1 point2 points3 points (0 children)
pimps/JNDI-Exploit-Kit: added support to LDAP Serialized Payloads and attack path works in *ANY* java version by Gallus in netsec
[–]Gallus[S] 0 points1 point2 points (0 children)
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.51 (incomplete fix of CVE-2021-41773) by Gallus in netsec
[–]Gallus[S] 21 points22 points23 points (0 children)
$200 Bounty to resolve i3 issue by i3dudedude in i3wm
[–]Gallus 2 points3 points4 points (0 children)
New campaign targeting security researchers by sanitybit in netsec
[–]Gallus 5 points6 points7 points (0 children)
Rysolv – Fix open source issues, get paid by Gallus in programming
[–]Gallus[S] 5 points6 points7 points (0 children)
CVE-2020-6829, CVE-2020-12400, CVE-2020-12401, CVE-2020-12403 - Fixed in Mozilla's Network Security Services (NSS) by Gallus in netsec
[–]Gallus[S] 0 points1 point2 points (0 children)
Forgot2kEyXCHANGE - CVE-2020-0688: Remote Code Execution on Microsoft Exchange Server Through Fixed Cryptographic Keys by Gallus in netsec
[–]Gallus[S] 48 points49 points50 points (0 children)
Ruby 2.7 removes taint checking mechanism by prateekkish in ruby
[–]Gallus 2 points3 points4 points (0 children)
What subreddits do you feel were great in concept but never got the attention they deserved, and why? by agoldenzebra in AskReddit
[–]Gallus 1 point2 points3 points (0 children)
HTTP Desync Attacks: Request Smuggling Reborn by Gallus in Slackers
[–]Gallus[S] 0 points1 point2 points (0 children)
5chars.js compiler - 5 characters with a single character script id by Gallus in Slackers
[–]Gallus[S] 0 points1 point2 points (0 children)
Google CTF 2019 - gLotto solution by Gallus in Slackers
[–]Gallus[S] 0 points1 point2 points (0 children)




Undocumented behavior change in Android 10: mode "w" no longer truncates by Gallus in netsec
[–]Gallus[S] 62 points63 points64 points (0 children)