Pushing browsers to the limit Abusing Modern Browser Features for Phishing Alexander Hurbean [Blog post] [Video] Committing CSS Crimes for fun and profit Lyra Rebane [Slides] [Blog post] [Video]…
Networking beyond plug-and-play GET /large file HTTP/1.1: Connection-Based TCP Amplification Attacks Yepeng Pan, Lars Richter, and Christian Rossow [Paper] [Code] WAFFLED: Exploiting Parsing…
Q3’25 ThinkstScapes Microsoft-induced security woes One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens Dirk-jan Mollema [Blog post] Turning Microsoft's Login…
ThinkstScapes Q2’25 Networking is always tricky Beyond the Horizon: Uncovering Hosts and Services Behind Misconfigured Firewalls Qing Deng, Juefei Pu, Zhaowei Tan, Zhiyun Qian, and Srikanth V.…
ThinkstScapes Q1’25 Putting it into practice Homomorphic Encryption across Apple features Rehan Rishi, Haris Mughees, Fabian Boemer, Karl Tarbe, Nicholas Genise, Akshay Wadia, and Ruiyu Zhu [Code]…
ThinkstScapes Q4’24 Wins and losses in the Microsoft ecosystem Pointer Problems - Why We’re Refactoring the Windows Kernel Joe Bialek [Video] Defending off the land Casey Smith, Jacob Torrey, and…
Themes covered in this episode Edge cases at scale still matter Works from this theme exploit rarely-occurring issues, but with an internet-wide aperture to end up with impressive results. Look for:…
AI/ML in security Injecting into LLM-adjacent components Johann Rehberger [Blog 1] [Blog 2] Teams of LLM Agents can Exploit Zero-Day Vulnerabilities Richard Fang, Rohan Bindu, Akul Gupta, Qiusi Zhan,…
Revealing more than anticipated, and preventing prying eyes PrintListener: Uncovering the Vulnerability of Fingerprint Authentication via the Finger Friction Sound Man Zhou, Shuao Su, Qian Wang, Qi…