Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
awesome-bugs
A collection of software bug types and articles showcasing the hunt for and exploitation of them.
https://github.com/HackOvert/awesome-bugs
- CWE-78
- CVE-2018-8460: Exposing a double free in Internet Explorer for code execution - ([YouTube version](https://www.youtube.com/watch?v=zjafMP7EgEA)) |
- Analysis & Exploitation of a Recent TP-Link Archer A7 Vulnerability
- Exploiting CVE-2018-1335: Command Injection in Apache Tika
- Show Mi The Vulns: Exploiting Command Injection in Mi Router 3
- CWE-415
- CVE-2018-8460: Exposing a double free in Internet Explorer for code execution
- MS13-068: A difficult-to-exploit double free in Outlook
- Pwn2Own 2019: Microsoft Edge Renderer Exploitation (CVE-2019-0940)
- CVE-2016-2384: Exploiting a double-free in the USB-MIDI Linux kernel driver
- CWE-476
- Win32k NULL-Pointer-Dereference Analysis by Matching the May Update
- CWE-843
- Ghostscript type confusion: Using variant analysis to find vulnerabilities
- Exploiting a Webroot Type Confusion Bug
- One Perfect Bug: Exploiting Type Confusion in Flash
- CVE-2018-12794: Using Type Confusion to Get Code Execution in Adobe Reader
- Understanding type confusion vulnerabilities: CVE-2015-0336
- Attacking Interoperability
- Exploiting CVE-2019-17026 - A Firefox JIT Bug
- Java Buffer Overflow with ByteBuffer (CVE-2020-2803) and Mutable MethodType (CVE-2020-2805) Sandbox Escapes
- Exploiting CVE-2019-17026 - A Firefox JIT Bug
- When GC Triggers Callback
- CWE-194
- Buffer overflow in PJSIP, a VoIP open source library
- CWE-416
- Use-After-Silence: Exploiting a Quietly Patched UAF in VMWare
- Exploiting a textbook use-after-free in Chrome
- CWE-134 - Controlled Format String
- Exploit in Skyrim
- CWE-123 - what-where Condition
- RCE Without Native Code: Exploitation of a Write-What-Where in Internet Explorer
- Internet Explorer CVE-2019–1367 Exploitation — part 2
- Exploiting SMBGhost (CVE-2020-0796) for a Local Privilege Escalation: Writeup + POC