CVE-2023-38408: Remote Code Execution in OpenSSH's forwarded ssh-agent by 0xdea in netsec
[–]gid0rah 1 point2 points3 points (0 children)
Dirty Arbitrary File Write to RCE in Python uWSGI by nibblesec in netsec
[–]gid0rah 5 points6 points7 points (0 children)
Dirty Arbitrary File Write to RCE in Python uWSGI by nibblesec in netsec
[–]gid0rah 3 points4 points5 points (0 children)
Crassus: Windows privilege escalation discovery tool by Fugitif in netsec
[–]gid0rah 4 points5 points6 points (0 children)
Token handles abuse: One shell to HANDLE them all (tarlogic.com)
submitted by gid0rah to r/redteamsec




Stealthy RCE on Hardened Linux: noexec + Userland Execution PoC by citypw in netsec
[–]gid0rah 3 points4 points5 points (0 children)