vulnerabilities
"“These deployments rarely got the hardening a production web app would. They run with default authentication settings and sit on public IPs because someone needed to demo a flow to a stakeholder..."
"To be clear about our approach to legal matters, we have no intention to pursue action against individuals conducting or publishing their security research."
A BitLocker "backdoor" remains unpatched, whilst "RedSun", "UnDefend, "BlueHammer" get exploited in the wild.
Redmond "lists this as a Microsoft Word bug, which may or may not be entirely accurate... it is a genuine Outlook 0-click RCE"
“A very stable and straightforward exploit” across distros, developed after Xint Code pointed an LLM at the Linux kernel for “about an hour”