Harry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 15 hours ago#curl 8.11.1 has been released. It includes a fix to #CVE_2024_11053 - a #vulnerability I discovered.plus-squaremessage-squaremessage-square0fedilinkarrow-up13arrow-down10
arrow-up13arrow-down1message-square#curl 8.11.1 has been released. It includes a fix to #CVE_2024_11053 - a #vulnerability I discovered.plus-squareHarry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 15 hours agomessage-square0fedilink
Harry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 2 days agoHeads up: If you've used the https://github.com/puckiestyle/CVE-2024-23113 for testing Fortinet systems vulnerable to #CVE_2024_23113: The code is broken and does not reliably check for theplus-squaremessage-squaremessage-square0fedilinkarrow-up17arrow-down10
arrow-up17arrow-down1message-squareHeads up: If you've used the https://github.com/puckiestyle/CVE-2024-23113 for testing Fortinet systems vulnerable to #CVE_2024_23113: The code is broken and does not reliably check for theplus-squareHarry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 2 days agomessage-square0fedilink
minus-squareHarry Sintonen@infosec.exchangeOPtoCybersecurity@fedia.io•In January 2022 I discovered that #Microsoft #Office365 Message #Encryption (OME) utilized Electronic Codebook (ECB) mode of operation. I reported this, got paid a $5000 bounty and then things felllinkfedilinkarrow-up1·12 days ago@screaminggoat@infosec.exchange Yep, that’s the one. linkfedilink
Harry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 12 days agoIn January 2022 I discovered that #Microsoft #Office365 Message #Encryption (OME) utilized Electronic Codebook (ECB) mode of operation. I reported this, got paid a $5000 bounty and then things fellplus-squarefedia.ioimagemessage-square4fedilinkarrow-up119arrow-down10
arrow-up119arrow-down1imageIn January 2022 I discovered that #Microsoft #Office365 Message #Encryption (OME) utilized Electronic Codebook (ECB) mode of operation. I reported this, got paid a $5000 bounty and then things fellplus-squarefedia.ioHarry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 12 days agomessage-square4fedilink
Harry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 2 months agoDisclosing details of a #vulnerability I discovered 1 year ago:plus-squarefedia.ioimagemessage-square0fedilinkarrow-up111arrow-down10
arrow-up111arrow-down1imageDisclosing details of a #vulnerability I discovered 1 year ago:plus-squarefedia.ioHarry Sintonen@infosec.exchange to Cybersecurity@fedia.io · 2 months agomessage-square0fedilink
@screaminggoat@infosec.exchange Yep, that’s the one.