41554 blogs · [ { "id": "01a0d7b1-ffad-7330-a43e-a74595c47a22", "title": "Windows Internals: Check Your Privilege — The Curious Case of ETW’s SecurityTrace Flag", "url": "https://core-jmp.org/2026/09/etw-securitytrace-flag-ppl-threat-intelligence/", "published_at": "2026-09-21T10:45:20+00:00" }, { "id": "01a0d7b1-ffad-7330-a43e-a74596151a37", "title": "Disposable Tooling: Building LLM-Generated Mythic Agents from Prompt to Deployment", "url": "https://core-jmp.org/2026/09/disposable-tooling-llm-generated-mythic-agents/", "published_at": "2026-09-21T10:33:14+00:00" }, { "id": "01a0d7b1-ffad-7330-a43e-a7459674a5f4", "title": "A Quartet of Linux Local Root Vulns: DirtyAH6, TUNderflow, PPPoEject, and DiagSpill", "url": "https://core-jmp.org/2026/09/linux-lpe-quartet-dirtyah6-tunderflow-pppoelect-diagspill/", "published_at": "2026-09-21T10:25:49+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc1f0f9076", "title": "Gray Rabbits and the Tale of a One-Click Backdoor: CVE-2026-51990 in Sogou Input Method", "url": "https://core-jmp.org/2026/09/gray-rabbits-one-click-backdoor-sogou-cve-2026-51990/", "published_at": "2026-09-16T10:25:08+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc1f8ee295", "title": "CVE-2026-85706: GitLab CE/EE Unauthenticated File Read via Workhorse vs Rails (.json and trailing slash)", "url": "https://core-jmp.org/2026/09/cve-2026-85706-gitlab-workhorse-json-file-read-pruva/", "published_at": "2026-09-16T10:22:16+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc1ffda887", "title": "A First Look Inside the Windows Endpoint Security Platform (WESP) on Insider 29661", "url": "https://core-jmp.org/2026/09/windows-endpoint-security-platform-wesp-insider-29661/", "published_at": "2026-09-16T10:17:00+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc20cda856", "title": "A Brilliantly Simple Bug in V8: CVE-2026-19174 and the 32-bit Multiply Nobody Did", "url": "https://core-jmp.org/2026/09/brilliantly-simple-v8-cve-2026-19174/", "published_at": "2026-09-16T10:12:44+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc21b45077", "title": "Red Heron Exploits Gitea n-day CVE-2026-60004, Exposing JITTERLY and the SIXZUT Linux Rootkit", "url": "https://core-jmp.org/2026/09/red-heron-gitea-cve-2026-60004-jitterly-sixzut/", "published_at": "2026-09-16T10:08:22+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc21fd4b22", "title": "A 0-click Exploit Chain for the Pixel 9, Part 3: Where Do We Go From Here?", "url": "https://core-jmp.org/2026/09/pixel-9-0-click-part-3-where-do-we-go-from-here/", "published_at": "2026-09-15T08:39:04+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc223d5460", "title": "A 0-click Exploit Chain for the Pixel 9, Part 2: Cracking the Sandbox with a Big Wave (CVE-2025-36934)", "url": "https://core-jmp.org/2026/09/pixel-9-0-click-part-2-bigwave-cve-2025-36934/", "published_at": "2026-09-15T08:32:47+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc233ad1fd", "title": "A 0-click Exploit Chain for the Pixel 9, Part 1: Decoding Dolby (CVE-2025-54957)", "url": "https://core-jmp.org/2026/09/pixel-9-0-click-part-1-decoding-dolby-cve-2025-54957/", "published_at": "2026-09-15T08:25:12+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc23f8b478", "title": "Active Exploitation of Cisco Secure Firewall Management Center: CVE-2026-20079, CVE-2026-20316, Cyclops Blink and Qilin", "url": "https://core-jmp.org/2026/09/cisco-fmc-cve-2026-20079-20316-talos-exploitation/", "published_at": "2026-09-14T14:24:55+00:00" }, { "id": "01a0b0b9-e828-713e-9ddb-eadc24deacb1", "title": "Domain Credential Dumping via File Handle Redirection", "url": "https://core-jmp.org/2026/09/domain-credential-dumping-file-handle-redirection/", "published_at": "2026-09-14T13:42:46+00:00" }, { "id": "01a0c504-2c4d-73d3-bc63-289ef7f96bac", "title": "From P-Code to GNN: Extracting Binary Code Semantics", "url": "https://core-jmp.org/2026/09/pcode-graph-gnn-binary-semantics/", "published_at": "2026-09-14T10:24:22+00:00" }, { "id": "01a094e8-436c-71cf-afd8-dc7fbc91fef9", "title": "Bypassing Android Hardware Attestation from the Analyst’s Chair", "url": "https://core-jmp.org/2026/09/android-hardware-attestation-analyst-relay/", "published_at": "2026-09-11T11:03:00+00:00" }, { "id": "01a094e8-436c-71cf-afd8-dc7fbca5b8f0", "title": "CVE-2026-20093: Unauthenticated Admin Reset on Cisco IMC", "url": "https://core-jmp.org/2026/09/cve-2026-20093-cisco-imc-auth-bypass/", "published_at": "2026-09-11T10:55:49+00:00" }, { "id": "01a094e8-436c-71cf-afd8-dc7fbd3f8861", "title": "Process ID Mutation via BYOVD: Making Sysmon Blame Notepad", "url": "https://core-jmp.org/2026/09/process-id-mutation-byovd-sysmon/", "published_at": "2026-09-11T10:50:15+00:00" }, { "id": "01a094e8-436c-71cf-afd8-dc7fbd8508ed", "title": "Caeruleus: BLE Security Testing Without the Scavenger Hunt", "url": "https://core-jmp.org/2026/09/caeruleus-ble-security-testing-bluez/", "published_at": "2026-09-11T10:38:03+00:00" }, { "id": "01a094e8-436c-71cf-afd8-dc7fbdfebfc3", "title": "From Job Offer to Ring 0: Lazarus, CVE-2026-68820 and FudModule 3.1", "url": "https://core-jmp.org/2026/09/lazarus-cve-2026-68820-fudmodule-ring-0/", "published_at": "2026-09-11T10:33:09+00:00" }, { "id": "01a08c8d-4f13-732e-94e2-878c5dad7283", "title": "KERAT: Static Detection of Kernel TOCTOU Bugs Caused by Races", "url": "https://core-jmp.org/2026/09/kerat-static-detection-kernel-toctou-races/", "published_at": "2026-09-10T10:53:36+00:00" }, { "id": "01a08c8d-4f13-732e-94e2-878c5e6f14b3", "title": "Manual LDAP Querying, Part 2: Nested Groups, UAC Bits, Trusts, and Foreign SIDs", "url": "https://core-jmp.org/2026/09/manual-ldap-querying-part-2-nested-groups-trusts-uac/", "published_at": "2026-09-10T10:28:21+00:00" }, { "id": "01a08c8d-4f13-732e-94e2-878c5f2a3cb7", "title": "Manual Active Directory Querying with dsquery and ldapsearch", "url": "https://core-jmp.org/2026/09/manual-active-directory-querying-dsquery-ldapsearch/", "published_at": "2026-09-10T10:19:11+00:00" }, { "id": "01a08763-d878-7394-9587-01493ff54a2b", "title": "CVE-2024-20356: Jailbreaking a Cisco Email Appliance to Run DOOM", "url": "https://core-jmp.org/2026/09/cve-2024-20356-cisco-cimc-jailbreak-doom/", "published_at": "2026-09-09T13:51:05+00:00" }, { "id": "01a08763-d878-7394-9587-014940058efd", "title": "How Can You Not Be Romantic About UNIX Domain Sockets: A 40-Year Kernel Bug From the DEF CON Stage", "url": "https://core-jmp.org/2026/09/unix-domain-sockets-inode-zero-xnu-defcon-34/", "published_at": "2026-09-09T12:00:38+00:00" }, { "id": "01a08763-d878-7394-9587-0149402197c3", "title": "ShieldCrash: The ShieldBreak Patch Still Lets Defender Read Files as SYSTEM", "url": "https://core-jmp.org/2026/09/shieldcrash-windows-defender-system-file-read-cve-2026-69414/", "published_at": "2026-09-09T11:22:56+00:00" }, { "id": "01a08763-d878-7394-9587-014940cd2bfe", "title": "N-able N-Central Critical Authentication Bypass: CVE-2026-86206 and CVE-2026-86207 Chained Attack", "url": "https://core-jmp.org/2026/09/nable-ncentral-authentication-bypass-cve-2026-86206-86207/", "published_at": "2026-09-09T10:43:36+00:00" }, { "id": "01a08763-d878-7394-9587-0149414ec58b", "title": "SQL Injection Still Exists in Android: One Picked Contact, Every Contact (CVE-2026-28576)", "url": "https://core-jmp.org/2026/09/cve-2026-28576-android-sql-injection-contacts/", "published_at": "2026-09-09T10:38:55+00:00" }, { "id": "01a08763-d878-7394-9587-0149420cb635", "title": "Privilege Escalation from IIS AppPool to NT Authority/SYSTEM via AD CS RPC Endpoint", "url": "https://core-jmp.org/2026/09/iis-apppool-privilege-escalation-ad-cs-rpc/", "published_at": "2026-09-02T12:50:37+00:00" }, { "id": "01a08763-d878-7394-9587-014942cf44f2", "title": "CATAnA: Exploring the Dangers of SIM-Originating AT Commands in Cellular Devices", "url": "https://core-jmp.org/2026/09/catana-sim-at-commands-vulnerabilities/", "published_at": "2026-09-02T11:38:59+00:00" }, { "id": "01a08763-d878-7394-9587-01494321890d", "title": "Proxmox VE 7.0–8.0.3: Unauthenticated Single-Request Root Auth Bypass (CVE-2023-54391)", "url": "https://core-jmp.org/2026/09/proxmox-ve-auth-bypass-cve-2023-54391/", "published_at": "2026-09-02T11:33:10+00:00" }, { "id": "01a08763-d878-7394-9587-014943fd814f", "title": "Singularity Rootkit: Evading Elastic Defend Module Load Detection", "url": "https://core-jmp.org/2026/09/singularity-rootkit-elastic-defend-bypass/", "published_at": "2026-09-02T11:14:55+00:00" }, { "id": "01a08763-d878-7394-9587-0149447c725a", "title": "Process ID Mutation via BYOVD: Evading Sysmon Telemetry Through Kernel Exploitation", "url": "https://core-jmp.org/2026/08/process-id-mutation-byovd-sysmon-evasion/", "published_at": "2026-08-28T11:34:10+00:00" } ] posts Claim your blog
Back to core-jmp.org
Blog · corpus.blog/blogs/core-jmp.org/posts

core-jmp.org

core-jmp.org

2026