Luke Jahnke
@nastystereo.com
๐ค 393
๐ฅ 109
๐ 10
reposted by
Luke Jahnke
Ken Shirriff
6 months ago
The Pentium's microcode ROM holds 414,720 bits in total: 4608 micro-instructions. For more photos of the Pentium's microcode circuitry along with a detailed explanation, see my latest blog post:
www.righto.com/2025/03/pent...
loading . . .
Notes on the Pentium's microcode circuitry
Most people think of machine instructions as the fundamental steps that a computer performs. However, many processors have another layer of ...
https://www.righto.com/2025/03/pentium-microcde-rom-circuitry.html
0
29
3
My latest blog post is live! Check your Ruby on Rails applications for the use of params[:_json]
nastystereo.com/security/rai...
10 months ago
1
34
16
reposted by
Luke Jahnke
James Kettle
10 months ago
Ten years ago, I realised I needed to rewrite ActiveScan++ in Java. After putting it off for so long that artificial intelligence was literally able to do 90% of the work for me, I've done it! It's now available in the BApp store. Report issues and feature requests here ->
github.com/albinowax/Ac...
loading . . .
GitHub - albinowax/ActiveScanPlusPlus: ActiveScan++ Burp Suite Plugin
ActiveScan++ Burp Suite Plugin. Contribute to albinowax/ActiveScanPlusPlus development by creating an account on GitHub.
https://github.com/albinowax/ActiveScanPlusPlus
0
42
10
reposted by
Luke Jahnke
Catalin Cimpanu
10 months ago
Security researcher Luke Jahnke has published an escape for SafeMarshal, a new Ruby security gem that can be used to block deserialization attacks
nastystereo.com/security/rub...
0
4
2
My latest blog post is live ๐ฅ Read it to learn what SafeMarshal is and *two* very different ways to escape and get RCE! Read it to find out why Date is *not* a safe class in Ruby or how to leverage serialized strings being constructed with string concatenation!
nastystereo.com/security/rub...
10 months ago
1
20
8
reposted by
Luke Jahnke
James Kettle
10 months ago
I've just rewritten ActiveScan++ in Java to lay the foundation for some major enhancements. It's not in the BApp store yet but if you'd like to take it for a spin you can grab it here:
github.com/albinowax/Ac...
loading . . .
GitHub - albinowax/ActiveScanPlusPlus: ActiveScan++ Burp Suite Plugin
ActiveScan++ Burp Suite Plugin. Contribute to albinowax/ActiveScanPlusPlus development by creating an account on GitHub.
https://github.com/albinowax/ActiveScanPlusPlus
3
48
17
reposted by
Luke Jahnke
PentesterLab
10 months ago
๐จ CORS vulnerabilities in Go ๐จ Misusing strings.HasSuffix, Contains, or HasPrefix? You might be leaving the door wide open! ๐ Learn how these patterns lead to bypasses ๐๐ ๐
pentesterlab.com/blog/golang-...
loading . . .
PentesterLab Blog: CORS Vulnerabilities in Go: Vulnerable Patterns and Lessons
Dive into common CORS vulnerabilities found in Go codebases, with real-world examples of flawed origin validation. Understand how these mistakes occur and why Go developers need robust solutions to se...
https://pentesterlab.com/blog/golang-cors-vulnerabilities
2
17
10
New blog post is up! Shiny Vulnerabilities in R's Most Popular Web Framework
nastystereo.com/security/r-s...
Turns out the programming language R is used for more than statistics, including web apps!
10 months ago
2
12
2
reposted by
Luke Jahnke
Koto
10 months ago
Not sure how I missed that, but we now actually have Ken Thompson's C compiler backdoor code from the classic "Reflections on Trusting Trust". An excellent writeup by
@swtch.com
-
research.swtch.com/nih
.
loading . . .
research!rsc: Running the โReflections on Trusting Trustโ Compiler
https://research.swtch.com/nih
0
9
3
reposted by
Luke Jahnke
ฯปะณ_ฯปฮต
10 months ago
I just wrote a new blog post! This is how I (ab)used a jailed file write bug in Tomcat/Spring. Enjoy! Remote Code Execution with Spring Properties ::
srcincite.io/blog/2024/11...
loading . . .
Remote Code Execution with Spring Properties
Recently a past student came to me with a very interesting unauthenticated vulnerability in a Spring application that they were having a hard time exploiting...
https://srcincite.io/blog/2024/11/25/remote-code-execution-with-spring-properties.html
1
76
38
My latest blog post is live!
nastystereo.com/security/cro...
Read how to send a cross-site POST without including a Content-Type header (without CORS). It even works with navigator.sendBeacon
10 months ago
3
79
33
I just published a new blog post sharing an improved Deserialization Gadget Chain for Ruby! It builds on the work of others, including Leonardo Giovanni,
@ulldma.bsky.social
and
@vakzz.bsky.social
nastystereo.com/security/rub...
11 months ago
0
15
5
you reached the end!!
feeds!
log in