Lessening the Pain of Mirth Connect CVE-2023-43208

  Рет қаралды 88

nanovms

nanovms

Күн бұрын

In this video we show how one can go about attacking Mirth Connect from vulnerabilities such as CVE-2023-43208. We show the exact same type of POCs don't work on Nanos and prevents certain types of payloads.
Note: While one can't utilize runtime.Exec and InvokerTransformer in this manner this doesn't completely eliminate this particular attack - what it does is force the attacker's payload to be more involved and does prevent certain types of payloads one might want to run.
To learn more check out nanos.org.

Пікірлер
Compromising the Security of WASM
8:36
nanovms
Рет қаралды 160
Going to Chinese Hacking Competition - Real World CTF Finals
12:47
LiveOverflow
Рет қаралды 1,5 МЛН
Life hack 😂 Watermelon magic box! #shorts by Leisi Crazy
00:17
Leisi Crazy
Рет қаралды 80 МЛН
啊?就这么水灵灵的穿上了?
00:18
一航1
Рет қаралды 55 МЛН
小天使和小丑太会演了!#小丑#天使#家庭#搞笑
00:25
家庭搞笑日记
Рет қаралды 58 МЛН
MP3 CDs: a hybrid "format" that never existed, yet was surprisingly common
34:18
Technology Connections
Рет қаралды 725 М.
10 Ways to Move a Lego Ship
11:06
Brick Technology
Рет қаралды 4,2 МЛН
Kerberos Authentication Explained | A deep dive
16:52
Destination Certification
Рет қаралды 348 М.
How the Best Hackers Learn Their Craft
42:46
RSA Conference
Рет қаралды 2,6 МЛН
HackTheBox - EvilCUPS
43:25
IppSec
Рет қаралды 9 М.
Google CTF Finals 2019!
11:03
LiveOverflow
Рет қаралды 350 М.
Life hack 😂 Watermelon magic box! #shorts by Leisi Crazy
00:17
Leisi Crazy
Рет қаралды 80 МЛН