Blog
Alle Einträge von modzero.
-
DISCLOSURE
Hoot Hoot Pwn
31. Mai 2022
Im Rahmen einer Analyse von Videokonferenzlösungen für einen Kunden, haben wir die Meeting Owl untersucht.
-
DISCLOSURE
Knapp daneben ist auch vorbei
7. September 2020
Schwachstellen und Datenschutzvergehen und wenig risikobewusster Umgang mit Daten und Ressourcen anhand eines Beispiels einer Eltern-Lehrpersonen-Plattform für Schulen.
-
DISCLOSURE
New security advisory regarding vulnerabilities in .Net
16. Juni 2020
Today, we publish a new advisory for some vulnerabilities, that have been found by our team-mate Nils Ole Timm (@firzen14).
-
DISCLOSURE
How Netgear meshed(*) up WiFi for Business
18. Mai 2020
(*) I'm really sorry for the pun line.
One day in December, I decided to actually build something. Something more or less useful. So, I paused breaking stuff (I really did) to create something that could help enhance the security-level of WiFi networks. I failed.
-
RESEARCH
Deserialization Attacks in .Net Games
17. April 2020
Today many games are developed using .Net or a modified .Net Runtime like the Unity engine. This of course means that deserialization vulnerabilities in .Net can also occur in these games.
-
DISCLOSURE
More security brings more insecurity
19. Februar 2020
modzero found a vulnerability in the Cisco Identity Services Engine (ISE) environment, which allows arbitrary participients of a network to inject arbitrary JavaScript payload right into the administrative webpage of the Cisco ISE administration interface.
⟵ Zurück
2 von 2
Alle Einträge von modzero.
-
DISCLOSURE
Hoot Hoot Pwn
31. Mai 2022
Im Rahmen einer Analyse von Videokonferenzlösungen für einen Kunden, haben wir die Meeting Owl untersucht.
-
DISCLOSURE
Knapp daneben ist auch vorbei
7. September 2020
Schwachstellen und Datenschutzvergehen und wenig risikobewusster Umgang mit Daten und Ressourcen anhand eines Beispiels einer Eltern-Lehrpersonen-Plattform für Schulen.
-
DISCLOSURE
New security advisory regarding vulnerabilities in .Net
16. Juni 2020
Today, we publish a new advisory for some vulnerabilities, that have been found by our team-mate Nils Ole Timm (@firzen14).
-
DISCLOSURE
How Netgear meshed(*) up WiFi for Business
18. Mai 2020
(*) I'm really sorry for the pun line. One day in December, I decided to actually build something. Something more or less useful. So, I paused breaking stuff (I really did) to create something that could help enhance the security-level of WiFi networks. I failed.
-
RESEARCH
Deserialization Attacks in .Net Games
17. April 2020
Today many games are developed using .Net or a modified .Net Runtime like the Unity engine. This of course means that deserialization vulnerabilities in .Net can also occur in these games.
-
DISCLOSURE
More security brings more insecurity
19. Februar 2020
modzero found a vulnerability in the Cisco Identity Services Engine (ISE) environment, which allows arbitrary participients of a network to inject arbitrary JavaScript payload right into the administrative webpage of the Cisco ISE administration interface.