buherator (buherator@infosec.place)'s status on Saturday, 08-Feb-2025 03:13:43 JST
-
Embed this notice
buherator (buherator@infosec.place)'s status on Saturday, 08-Feb-2025 03:13:43 JST buherator
@screaminggoat @zeljkazorz @GossiTheDog "However, due to inadequate server configurations, attacks become possible if *the serialized data is not verified* (CWE-642)" - this sounds more like disabled MAC than leaked key to me