πNew WriteupβοΈ
βββββββββββββββ
πDate: Sat, 24 Jun 2023 17:42:58 GMT
βββββββββββββββ
βοΈTitle: Optimistic ChallengeβββHack The Box Walkthrough
βββββββββββββββ
πLink: https://medium.com/p/d85e5af8342c
βββββββββββββββ
Tags: #hackthebox_writeup #ghidra #integer_overflow #radare2 #tutorial
βββββββββββββββ
πDate: Sat, 24 Jun 2023 17:42:58 GMT
βββββββββββββββ
βοΈTitle: Optimistic ChallengeβββHack The Box Walkthrough
βββββββββββββββ
πLink: https://medium.com/p/d85e5af8342c
βββββββββββββββ
Tags: #hackthebox_writeup #ghidra #integer_overflow #radare2 #tutorial
Medium
Optimistic Challenge β Hack The Box Walkthrough
Optimistic is a binary exploitation challengeon hach the box that is vulnerable to an integer overflowand shellcode injection.
β€· Title: Integer Overflow Zafiyetini Anlamak
ββββββββββββββββββββββββ
πͺ Author: Emre GΓΌl
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 18 Feb 2025 12:26:38 GMT
ββββββββββββββββββββββββ
β Tags: #c #integer_overflow #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: Emre GΓΌl
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 18 Feb 2025 12:26:38 GMT
ββββββββββββββββββββββββ
β Tags: #c #integer_overflow #cybersecurity
Medium
Integer Overflow Zafiyetini Anlamak
Bir web sitesinde sepete yΓΌzlerce ΓΌrΓΌn eklediΔinizde sepet tutarΔ±nΔ±n β-100 TLβ olduΔunu dΓΌΕΓΌnΓΌn. Ya da programΔ±nΔ±zda boyut(size) kontrolΓΌ yaptΔ±ΔΔ±nΔ±z bir yerin tΓΌm sistemin hacklenmesine sebepβ¦
β€· Title: CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 28 Apr 2025 00:26:27 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 28 Apr 2025 00:26:27 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
Daily CyberSecurity
CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
FastCGI CVE-2025-23016 vulnerability allows heap overflow and potential code execution on embedded devices. Users must upgrade to version 2.4.5 or later
β€· Title: Chrome Update Alert: Two High-Severity Flaws (CVE-2025-6191, CVE-2025-6192) Patched
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 18 Jun 2025 00:16:12 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #chrome #cybersecurity #google chrome #High Severity #integer overflow #Profiler #security update #use after free #V8 #Vulnerability
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 18 Jun 2025 00:16:12 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #chrome #cybersecurity #google chrome #High Severity #integer overflow #Profiler #security update #use after free #V8 #Vulnerability
Daily CyberSecurity
Chrome Update Alert: Two High-Severity Flaws (CVE-2025-6191, CVE-2025-6192) Patched
Google Chrome 137.0.7151.119/.120 is rolling out with crucial security fixes, addressing two high-severity flaws: an integer overflow in V8 and a use-after-free in Profiler.
β€· Title: VirtualBox VM Escape: Integer Overflow Flaw Allows Full Host Takeover, PoC Published
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 06 Aug 2025 10:14:36 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #cybersecurity #integer overflow #rce #Remote Code Execution #virtualbox #virtualization #VM Escape
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 06 Aug 2025 10:14:36 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #cybersecurity #integer overflow #rce #Remote Code Execution #virtualbox #virtualization #VM Escape
Daily CyberSecurity
VirtualBox VM Escape: Integer Overflow Flaw Allows Full Host Takeover, PoC Published
A critical integer overflow in VirtualBox (CVE-2025-30712) allows an attacker to escape the VM and execute code on the host, with a public proof-of-concept available.
β€· Title: Researcher Details Zero-Click RCE in Dolby Audio Decoder Affecting Android, iOS, and macOS
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 20 Oct 2025 00:11:20 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #android #Audio Decoder #Dolby Digital Plus #integer overflow #ios #Project Zero #rce #Zero_Click
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 20 Oct 2025 00:11:20 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #android #Audio Decoder #Dolby Digital Plus #integer overflow #ios #Project Zero #rce #Zero_Click
Daily CyberSecurity
Researcher Details Zero-Click RCE in Dolby Audio Decoder Affecting Android, iOS, and macOS
Google Project Zero disclosed a zero-click RCE flaw (CVE-2025-54957, CVSS 7.0) in Dolby's Audio Decoder. The integer overflow can be triggered by a single audio file and affects Android, iOS, and macOS.
β€· Title: ImageMagick Flaw Risks Arbitrary Memory Disclosure via PSX TIM File Integer Overflow on 32-bit Systems
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 15 Dec 2025 00:05:51 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #32_bit #Arbitrary Memory Disclosure #CVE_2025_66628 #ImageMagick #integer overflow #open_source #PSX TIM
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 15 Dec 2025 00:05:51 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #32_bit #Arbitrary Memory Disclosure #CVE_2025_66628 #ImageMagick #integer overflow #open_source #PSX TIM
Daily CyberSecurity
ImageMagick Flaw Risks Arbitrary Memory Disclosure via PSX TIM File Integer Overflow on 32-bit Systems
A High-severity (CVSS 7.5) flaw in ImageMagick's PSX TIM parser allows Arbitrary Memory Disclosure on 32-bit systems via an integer overflow. Patch immediately to v7.1.2-10.
β€· Title: The iOS 26.2 Trap: New WebKit Integer Overflow Discovered with PoCβIs Your iPhone at Risk?
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 29 Dec 2025 01:53:21 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apple #Gigacage #integer overflow #iOS 26.2 #iPhone security #JavaScriptCore #Joseph Goydish #PoC #rce #Remote Code Execution #Safari #Vulnerability #WebKit
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 29 Dec 2025 01:53:21 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apple #Gigacage #integer overflow #iOS 26.2 #iPhone security #JavaScriptCore #Joseph Goydish #PoC #rce #Remote Code Execution #Safari #Vulnerability #WebKit
Daily CyberSecurity
The iOS 26.2 Trap: New WebKit Integer Overflow Discovered with PoCβIs Your iPhone at Risk?
Joseph Goydish uncovers a critical integer overflow in iOS 26.2βs WebKit. Proof of Concept shows how attackers can crash browsers or trigger RCE.
β€· Title: The Minting Glitch: How a 5-Year-Old Bug Cost Truebit $26 Million
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 13 Jan 2026 04:05:04 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #Blockchain Security #DeFi Hack 2026 #Ethereum #Halborn #Integer Overflow #SlowMist #Smart Contract Exploit #Tornado Cash #TRU Token #Truebit Protocol
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 13 Jan 2026 04:05:04 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability #Blockchain Security #DeFi Hack 2026 #Ethereum #Halborn #Integer Overflow #SlowMist #Smart Contract Exploit #Tornado Cash #TRU Token #Truebit Protocol
Penetration Testing Tools
The Minting Glitch: How a 5-Year-Old Bug Cost Truebit $26 Million
In early January 2026, a sophisticated adversary identified a critical vulnerability within the purchase and minting contract of
β€· Title: Decades-Old Flaw & New Heap Corruption: Critical glibc Bugs Revealed
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 19 Jan 2026 00:01:47 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #ASLR Bypass #CVE_2026_0861 #CVE_2026_0915 #glibc #GNU C Library #heap corruption #infosec #integer overflow #Linux Security #Memory Leak
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 19 Jan 2026 00:01:47 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #ASLR Bypass #CVE_2026_0861 #CVE_2026_0915 #glibc #GNU C Library #heap corruption #infosec #integer overflow #Linux Security #Memory Leak
Daily CyberSecurity
Decades-Old Flaw & New Heap Corruption: Critical glibc Bugs Revealed
The maintainers of the GNU C Library (glibc), the core library that underpins the vast majority of Linux-based systems, have disclosed details on two security vulnerabilities ranging from high-sevβ¦
β€· Title: Urgent Chrome Patch: Google Fixes High-Severity PDF and V8 Engine Flaws
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 19 Feb 2026 13:52:51 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Chrome Update #CVE_2026_2648 #CVE_2026_2649 #CVE_2026_2650 #Cyber Security #google chrome #Heap Buffer Overflow #integer overflow #Patch Alert #PDFium #V8 Engine
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 19 Feb 2026 13:52:51 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Chrome Update #CVE_2026_2648 #CVE_2026_2649 #CVE_2026_2650 #Cyber Security #google chrome #Heap Buffer Overflow #integer overflow #Patch Alert #PDFium #V8 Engine
Daily CyberSecurity
Urgent Chrome Patch: Google Fixes High-Severity PDF and V8 Engine Flaws
Google releases an urgent Chrome update to patch high-severity flaws in PDFium (CVE-2026-2648) and the V8 engine (CVE-2026-2649). Update to 145 now.
β€· Title: Integer Overflow Flaw in Apache ActiveMQ Exposes MQTT Brokers to DoS
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 05 Mar 2026 08:31:19 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apache ActiveMQ #CVE_2025_66168 #cybersecurity #dos attack #infosec #integer overflow #IoT security #MQTT Protocol #Patch Alert #Vulnerability
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 05 Mar 2026 08:31:19 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apache ActiveMQ #CVE_2025_66168 #cybersecurity #dos attack #infosec #integer overflow #IoT security #MQTT Protocol #Patch Alert #Vulnerability
Daily CyberSecurity
Integer Overflow Flaw in Apache ActiveMQ Exposes MQTT Brokers to DoS
An integer overflow flaw (CVE-2025-66168) in Apache ActiveMQ's MQTT module allows authenticated attackers to crash brokers. Update your systems immediately.
β€· Title: The MuPDF Vulnerability Turning βSafeβ PDFs into System Hijackers
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Apr 2026 12:00:29 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Artifex #CVE_2026_3308 #heap overflow #infosec #integer overflow #Linux Security #Memory Management #MuPDF #PDF Security #rce #Vulnerability
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Apr 2026 12:00:29 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Artifex #CVE_2026_3308 #heap overflow #infosec #integer overflow #Linux Security #Memory Management #MuPDF #PDF Security #rce #Vulnerability
Daily CyberSecurity
The MuPDF Vulnerability Turning "Safe" PDFs into System Hijackers
Artifex MuPDF faces a 7.8 CVSS integer overflow (CVE-2026-3308) allowing RCE via "crafted" PDFs. With no official patch, sandboxing is vital. Update now.
β€· Title: The $86,000 Patch: Chrome 147 Crushes βCriticalβ WebML Memory Flaws
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Apr 2026 01:54:41 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #browser security #Chrome 147 #CVE_2026_5858 #CVE_2026_5859 #cybersecurity #Google Chrome Update #Heap Buffer Overflow #integer overflow #memory safety #V8 Engine #WebML
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Apr 2026 01:54:41 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #browser security #Chrome 147 #CVE_2026_5858 #CVE_2026_5859 #cybersecurity #Google Chrome Update #Heap Buffer Overflow #integer overflow #memory safety #V8 Engine #WebML
Daily CyberSecurity
The $86,000 Patch: Chrome 147 Crushes "Critical" WebML Memory Flaws
Google Chrome 147 is out with critical security fixes for WebML and V8. Protect your browser from overflows and memory leaksβupdate to version 147 now!
β€· Title: Apache ActiveMQ Patches βOOMβ and MQTT Protocol Flaws
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 13 Apr 2026 13:30:30 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apache ActiveMQ #Broker Security #CVE_2026_39304 #CVE_2026_40046 #Denial of Service #infosec #integer overflow #memory exhaustion #MQTT #TLSv1.3
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 13 Apr 2026 13:30:30 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Apache ActiveMQ #Broker Security #CVE_2026_39304 #CVE_2026_40046 #Denial of Service #infosec #integer overflow #memory exhaustion #MQTT #TLSv1.3
Daily CyberSecurity
Apache ActiveMQ Patches "OOM" and MQTT Protocol Flaws
Apache ActiveMQ patches critical TLSv1.3 memory exhaustion (CVE-2026-39304) and an MQTT regression. Upgrade to 6.2.4 or 5.19.5 to secure your broker!
β€· Title: Chromeβs Security Overhaul: 127 Fixes and $100k+ in Bounties Power the New Chrome 148 Stable Release
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 07 May 2026 01:46:23 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Blink Engine #bug bounty #Chrome 148 #CVE_2026_7896 #cybersecurity #google chrome #Google Security #infosec #integer overflow #use after free #V8 Engine
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 07 May 2026 01:46:23 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Blink Engine #bug bounty #Chrome 148 #CVE_2026_7896 #cybersecurity #google chrome #Google Security #infosec #integer overflow #use after free #V8 Engine
Daily CyberSecurity
Chromeβs Security Overhaul: 127 Fixes and $100k+ in Bounties Power the New Chrome 148 Stable Release
Google Chrome 148 is out with 127 security fixes, including 3 Critical flaws in Blink and V8. Protect your dataβcheck your version and update today!
β€· Title: Print-Path RCE Exposed: Critical HP Linux Driver Flaws (CVE-2026-8631) Grant Root Privileges
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 May 2026 02:12:56 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2026_8631 #CVE_2026_8632 #Cyber Security #Driver Vulnerability #HP Linux Driver #hpcups Processing #HPLIP Software #infosec #integer overflow #Local Privilege Escalation #Remote Code Execution
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 May 2026 02:12:56 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2026_8631 #CVE_2026_8632 #Cyber Security #Driver Vulnerability #HP Linux Driver #hpcups Processing #HPLIP Software #infosec #integer overflow #Local Privilege Escalation #Remote Code Execution
Daily CyberSecurity
Print-Path RCE Exposed: Critical HP Linux Driver Flaws (CVE-2026-8631) Grant Root Privileges
HP patches critical 9.3 CVSS flaw CVE-2026-8631 in HPLIP drivers. Unauthenticated attackers can bypass memory limits for Linux remote code execution.
β€· Title: libssh2 Vulnerability CVE-2026-58050 Gets Public PoC Exploit
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 28 Jun 2026 08:29:35 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2026_55200 #CVE_2026_58050 #heap overflow #integer overflow #libssh2 #PoC Exploit #ssh #VulnCheck
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 28 Jun 2026 08:29:35 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #CVE_2026_55200 #CVE_2026_58050 #heap overflow #integer overflow #libssh2 #PoC Exploit #ssh #VulnCheck
Daily CyberSecurity
libssh2 Vulnerability CVE-2026-58050 Gets Public PoC Exploit
TL;DR Researchers publicly disclosed a libssh2 vulnerability tracked as CVE-2026-58050. The flaw lets a malicious SSH server corrupt the heap of a connecting client. Proof-of-concept exploit code β¦
β€· Title: HPLIP Vulnerability CVE-2026-14544 (CVSS 9.8) Allows Arbitrary Code Execution
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Jul 2026 06:05:36 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Arbitrary Code Execution #CVE_2026_14544 #CVE_2026_8631 #CVE_2026_8632 #hpcups #HPLIP #HPLIP vulnerability #integer overflow #Linux printing
ββββββββββββββββββββββββ
πͺ Author: Do Son
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Jul 2026 06:05:36 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #Arbitrary Code Execution #CVE_2026_14544 #CVE_2026_8631 #CVE_2026_8632 #hpcups #HPLIP #HPLIP vulnerability #integer overflow #Linux printing
Daily CyberSecurity
HPLIP Vulnerability CVE-2026-14544 (CVSS 9.8) Allows Arbitrary Code Execution
TL;DR Red Hat disclosed a critical HPLIP vulnerability, tracked as CVE-2026-14544, with a CVSS score of 9.8. The flaw lets a remote attacker reach arbitrary code execution or privilege escalation β¦