Media Summary: This video demonstrates how multiple vulnerabilities in Telerik UI can be chained to achieve remote SSTI This video explores the world of Server-Side Template This video demonstrates how an unauthenticated attacker could execute commands on affected Oracle WebLogic Servers.

Cve 2017 3511 Code Injection - Detailed Analysis & Overview

This video demonstrates how multiple vulnerabilities in Telerik UI can be chained to achieve remote SSTI This video explores the world of Server-Side Template This video demonstrates how an unauthenticated attacker could execute commands on affected Oracle WebLogic Servers. Malware Pork is airborne and hell hath frozen over; MALDEV PART 2 IS FINALLY OUT! Thank you, guys ... Abstract == Deserialization vulnerabilities in Java are lesser known and exploited (compared to unserialize() in PHP). This talk will ... A critical authorization bypass vulnerability, specifically a

The technological prowess of attackers has increased dramatically over the last several years. Gone are the days when you could ... Support This Channel ====================== Please like and subscribe, it means a lot! Please buy me a coffee so I can ...

Photo Gallery

CVE-2017-3511: Code Injection through DLL Sideloading in 64bit Oracle Java
CVE-2017-2636: Local Privilege Escalation Demo (SMEP Bypass)
Chaining CVE 2017 11317 & CVE 2019 18935 to Achieve RCE – Reported to AT&T
Server-Side Template Injections Explained
Demonstrating CVE-2020-2555: Remote Code Execution in Oracle's WebLogic Server
Malware Development: Process Injection
Matthias Kaiser - Exploiting Deserialization Vulnerabilities in Java
CVE-2026-48907 - Joomla! JCE extension  2.9.99.5 - unauthenticated Remote Code Execution
CVE-2026-10880: SQL Injection in QuantaStor SDS Manager
CVE-2017-0144 CTF Challenge
CVE-2026-4104: Unauthenticated SQL Injection in TeknoPass
SANS DFIR WEBCAST - 50 Shades of Hidden - Diving deep into code injection -
View Detailed Profile
CVE-2017-3511: Code Injection through DLL Sideloading in 64bit Oracle Java

CVE-2017-3511: Code Injection through DLL Sideloading in 64bit Oracle Java

Full post: https://bogner.sh/2017/04/

CVE-2017-2636: Local Privilege Escalation Demo (SMEP Bypass)

CVE-2017-2636: Local Privilege Escalation Demo (SMEP Bypass)

CVE

Chaining CVE 2017 11317 & CVE 2019 18935 to Achieve RCE – Reported to AT&T

Chaining CVE 2017 11317 & CVE 2019 18935 to Achieve RCE – Reported to AT&T

This video demonstrates how multiple vulnerabilities in Telerik UI can be chained to achieve remote

Server-Side Template Injections Explained

Server-Side Template Injections Explained

SSTI #WebSecurity This video explores the world of Server-Side Template

Demonstrating CVE-2020-2555: Remote Code Execution in Oracle's WebLogic Server

Demonstrating CVE-2020-2555: Remote Code Execution in Oracle's WebLogic Server

This video demonstrates how an unauthenticated attacker could execute commands on affected Oracle WebLogic Servers.

Malware Development: Process Injection

Malware Development: Process Injection

Malware #Development #redteam Pork is airborne and hell hath frozen over; MALDEV PART 2 IS FINALLY OUT! Thank you, guys ...

Matthias Kaiser - Exploiting Deserialization Vulnerabilities in Java

Matthias Kaiser - Exploiting Deserialization Vulnerabilities in Java

Abstract == Deserialization vulnerabilities in Java are lesser known and exploited (compared to unserialize() in PHP). This talk will ...

CVE-2026-48907 - Joomla! JCE extension  2.9.99.5 - unauthenticated Remote Code Execution

CVE-2026-48907 - Joomla! JCE extension 2.9.99.5 - unauthenticated Remote Code Execution

https://nvd.nist.gov/vuln/detail/

CVE-2026-10880: SQL Injection in QuantaStor SDS Manager

CVE-2026-10880: SQL Injection in QuantaStor SDS Manager

A critical

CVE-2017-0144 CTF Challenge

CVE-2017-0144 CTF Challenge

CVE-2017-0144 CTF Challenge

CVE-2026-4104: Unauthenticated SQL Injection in TeknoPass

CVE-2026-4104: Unauthenticated SQL Injection in TeknoPass

A critical authorization bypass vulnerability, specifically a

SANS DFIR WEBCAST - 50 Shades of Hidden - Diving deep into code injection -

SANS DFIR WEBCAST - 50 Shades of Hidden - Diving deep into code injection -

The technological prowess of attackers has increased dramatically over the last several years. Gone are the days when you could ...

SQL Injection - Visible Error-Based SQL Injection

SQL Injection - Visible Error-Based SQL Injection

Support This Channel ====================== Please like and subscribe, it means a lot! Please buy me a coffee so I can ...