./dr3dd

  • Razer Cortex Unquoted Search path Vulnerability - $750 USD

    I found this bug in Razer Cortex Service vesion 7.3.23.124 .By default RzKLService.exe runs with system privileges, and it executes RazerCortex.exe with administrator privileges but the way its load this binary i.e RazerCortex.exe is vulnerable to Unquoted Search path Vulnerability. So any attacker to can executes its binary which is...

  • GSoC'19 Final Report | OWASP Foundation

    ---- GSoC'19 Final Report | OWASP Foundation ( Project- DefectDojo) ---- DefectDojo is a security tool that automates application security vulnerability management. DefectDojo streamlines the application security testing process by offering features such as importing third-party security findings, merging and deduping, integration with Jira, templating, report generation and security metrics....

  • Warmup

    Securinets-CTF-2019(Warmup, 960 pt) On excuting the given binary asked for passcode and passcode is the flag which we have to recover it. Now lets dive on the chall . On decompiling binary in ida we can see our flag input is passed in a function which is like this: _int64...