Day[0]

Binary Ninja's Decompiler, git credential leak, cross-platform LPEs

Apr 21, 2020
Ask episode
Chapters
Transcript
Episode notes
1
Introduction
00:00 • 2min
2
Are You Going to Pay the Ransom?
02:06 • 2min
3
Is It Necessary to Pay for Kidnapping?
04:12 • 2min
4
Is It a Data Breach?
06:22 • 3min
5
I'm Not Saying That Companies Aren't Reporting It, but I'd Like to Say That
08:57 • 3min
6
A Man Does Have an Impact
11:33 • 2min
7
Zoom Zero Day Exploit for 500 Thousand Dollars?
13:43 • 4min
8
The Government's Usually Buying on the Gray Market
17:29 • 2min
9
Is the Black Market More Exclusive Than the Gray Market?
19:41 • 3min
10
The Window Zero Day Is Nice Clean, Right?
23:05 • 3min
11
The Three D S Vulnerabilities
25:59 • 3min
12
Password Managers
28:37 • 5min
13
The Last Pass Is Your Own Service, You Know?
33:56 • 2min
14
Binarininja - A New Tool for Collaboration
35:49 • 2min
15
Is There a Debugger?
37:21 • 4min
16
The Decompiler
40:57 • 3min
17
Those Braces Only Are Going to Be Adding Empty Lines
43:52 • 2min
18
I've Never Had a Simple No Application Compiler, but I Can't See That in Practice
45:28 • 3min
19
Decompiler
48:01 • 5min
20
The De Compiler Isn't Using Themselves
53:27 • 6min
21
C T F
59:20 • 4min
22
Code Execution on the Colonelye
01:02:58 • 4min
23
Yeah, I'm Not Complaining About Them.
01:07:25 • 2min
24
You Can't Cash Cross Origin Requests?
01:09:45 • 5min
25
Themes for PHP Scripts
01:14:41 • 2min
26
The Post Request Fires Off, but You Can't Read the Response, but It Did
01:16:52 • 2min
27
- One Dot Seven Six?
01:19:17 • 3min
28
Is It a One Time Pen?
01:22:29 • 5min
29
Is There a Bug in the Git Credential Helper?
01:26:59 • 3min
30
Using a User Name in a Web Site
01:29:34 • 4min
31
Is This a Symbolic Link?
01:33:12 • 4min
32
Is There a Blakey Access Check?
01:37:30 • 5min
33
The First Bug Was Fixed, but the Other Issues Are Still Existing
01:42:38 • 2min
34
I've Had Massive Performance Issues on Hyperv on Window Stuff.
01:44:09 • 4min
35
Doss, Is It Exploitable?
01:48:28 • 2min
36
C vs S Doesn't Capture the Potential of an Issue.
01:50:32 • 6min
37
Zemperium Kernel Vulnerability
01:56:17 • 2min
38
Is There a Common Way to Destroy Race Conditions?
01:58:13 • 5min
39
Spectra
02:02:46 • 3min
40
The S and B Ghost a Vulnerability Is Still There, but It's Not Fixed Yet.
02:05:44 • 6min
41
The Lp E Can Be Turned Remote Using Clever Tricks Like Abusing Physical Memory Like That
02:11:22 • 4min
42
Getting Code Coverage on Maze Mazes
02:15:29 • 5min
43
Hybrid Ffuzzing
02:20:21 • 3min
44
Integer Hybrid Ffuzzing With Polyhedro Path Abstraction
02:23:15 • 5min
45
Is There a Repository for Exlit Development?
02:28:03 • 3min