BlackHat 2011 Presentation
ID: 9439a0ad-a3d4-5b9d-9b43-cd1904547d3f
STIX ID: report--9439a0ad-a3d4-5b9d-9b43-cd1904547d3f
Feed Name: SensePost Blog
Threat Score
Presentation materials and tools were released demonstrating how to craft malicious Python Pickle payloads and automating conversion of Python calls into Pickle opcodes (Converttopickle.py and Anapickle). The authors demonstrated multiple vulnerable targets (a library, security software, web apps, P2P software) and a privilege escalation bug on RHEL6; slides, a whitepaper and tools are linked for further details.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
