all posts.
4 entries found.
-
▶ CVE-2024-9129: Format String Injection in Zend Server
In this blog post, I want to share some details about a vulnerability I identified in the Zend Server product by Perfoce, versions 8.5 and prior to version 9.2. The vulnerability is a format string issue, a well-known category of flaws commonly associated with binary exploitation, and in this case, it is exploitable via web (HTTP).
-
▶ Red Team Ops II (CRTL) Review
Pleased with my experience with the RTO I certification, I decided to move forward with RTO II. In this post, I’ll share my personal experience with this certification.
-
▶ RastaLabs Hack The Box ProLab Review
After completing the CRTO certification from Zero Point Security, I felt the need to test the knowledge I had gained by applying it in a specific context. Among the many (and valid) options available, I decided to dive into the Rastalabs ProLab from Hack The Box. This lab allowed me, at the cost of a bit of sanity, to experiment with my skills and turned out to be a great opportunity to learn something new.
-
▶ Red Team Ops (CRTO) Review
In this blog post, written after earning the Red Team Ops certification from Zero Point Security, I want to share my experience and thoughts about this certification.