Windows套接字:从注册I/O到SYSTEM权限
这篇文章探讨了Windows系统中一个严重的内核模式use-after-free漏洞(CVE-2024-38193),该漏洞存在于afd.sys驱动中,并且可以通过Registered I/O机制被利用来获取SYSTEM级别的权限。 2025-4-27 06:39:24 Author: blog.exodusintel.com(查看原文) 阅读量:16 收藏

Safari, Hold Still for NaN Minutes!

December 11, 2023

By Vignesh Rao and Javier Jimenez Introduction In October 2023 Vignesh and Javier presented the discovery of a few bugs affecting JavaScriptCore, the JavaScript engine of Safari.

Read More


文章来源: https://blog.exodusintel.com/category/vulnerability-analysis/
如有侵权请联系:admin#unsafe.sh