security analysis

  1. Talos Vulnerability Roundup: DirectX Privilege Escalation OpenFOAM RCE Libbiosig Parsing

    Cisco Talos’ latest vulnerability roundup pulls into sharp focus three related but technically distinct problems: a local privilege escalation in the Microsoft DirectX End‑User Runtime installer, an arbitrary code execution vector embedded in OpenCFD OpenFOAM’s Code Stream directive, and a set...
  2. No Public Details on CVE-2025-36350 AMD Store Queue Attack Yet

    As of July 8, 2025, there is no publicly available information regarding a vulnerability identified as CVE-2025-36350, specifically related to an "AMD Store Queue Transient Scheduler Attack." This CVE does not appear in the Common Vulnerabilities and Exposures (CVE) database, and AMD has not...
  3. Windows 11 KASLR Bypass Exploit Using eneio64.sys Driver Vulnerability

    A recent security analysis has unveiled a method to bypass Kernel Address Space Layout Randomization (KASLR) protections in Windows 11 24H2 by exploiting an HVCI-compatible driver with physical memory access capabilities. This research, published by security expert Yazid on June 9, 2025...
  4. Uncovering Windows 11 KTM Vulnerabilities: Cookies and Exploits at OffensiveCon 2025

    At OffensiveCon 2025, held at the Hilton Berlin, security researchers presented a groundbreaking analysis titled "Hunting For Overlooked Cookies In Windows 11 KTM And Baking Exploits For Them." This presentation delved into the intricacies of the Windows 11 Kernel Transaction Manager (KTM)...