Articles worth reading discovered last week:
CVE-2023-38408: Remote Code Execution in OpenSSH's forwarded ssh-agent
🗞 https://www.qualys.com/2023/07/19/cve-2023-38408/rce-openssh-forwarded-ssh-agent.txt
EchOh-No! a Vulnerability and PoC demonstration in a popular Minecraft Anticheat tool.
🗞 https://ioctl.fail/echo-ac-writeup/
ABUSING AMAZON VPC CNI PLUGIN FOR KUBERNETES
🗞 https://www.elttam.com/blog/amazon-vpc-cni/
WSAST CODE ANALYZER
🗞 https://www.wsast.co.uk/
A look at Chrome’s security review culture
🗞 https://security.googleblog.com/2023/07/a-look-at-chromes-security-review.html
Shifting boundaries: Exploiting an Integer Overflow in Apple Safari
🗞 https://blog.exodusintel.com/2023/07/20/shifting-boundaries-exploiting-an-integer-overflow-in-apple-safari/
AppSec eZine 492
🗞 https://pathonproject.com/zb/?3ee639285671960d#qMGhPRnf0V5RKLZYrOMn9eEwic7zg0wckpqngGZmKdw=