Day[0]

[bounty] Spoofing Emails, PandoraFMS, and Keycloak

Jan 9, 2024
The hosts delve into security vulnerabilities lurking in desktop applications, highlighting client-side path traversal risks. They reveal alarming issues in Pandora FMS, including unauthenticated access and remote code execution. A deep dive into SMTP vulnerabilities unravels the complex world of email spoofing and the failures of current security protocols. Through engaging anecdotes and technical analysis, they advocate for better security practices and responsible disclosure to combat these persistent threats.
Ask episode
Chapters
Transcript
Episode notes