Entry Thumbnail

Breaking Into a Brother (MFC-J1010DW): Three Security Flaws in a Seemingly Innocent Printer

## The Target: Brother MFC-J1010DW – Affected Models: `Brother Printer MFC-J1010DW` – Vulnerable Firmware: `Version <= 1.18` ## TL;DR: The Vulnerability Chain We discovered three vulnerabilities that when chained together, allow for complete remote compromise: – **Authentication Bypass via SNMP**- Retrieve the printer’s serial number without authentication, allowing attackers to […]

Posted by
Entry Thumbnail

Drawn to Danger: Windows Graphics Vulnerabilities Lead to Remote Code Execution and Memory Exposure

Check Point Research (CPR) identified three security vulnerabilities in the _Graphics Device Interface (_ `GDI`) in Windows. We promptly reported these issues to Microsoft, and they were addressed in the _Patch Tuesday_ updates in May, July, and August 2025. These are the vulnerabilities: Vulnerability disclosures such as these highlight the need for proactive […]

Posted by
Entry Thumbnail

Windows ARM64 Internals: Exception & Privilege Model, Virtual Memory Management, and Windows under Virtualization Host Extensions

# Windows ARM64 Internals: Exception & Privilege Model, Virtual Memory Management, and Windows under Virtualization Host Extensions (VHE) ## Introduction About 5 years ago I put out a blog post about 64-bit “memory paging” on a standard Intel x64-based Windows machine when I was first starting to learn about Windows […]

Posted by
Entry Thumbnail

Dissecting YouTube’s Malware Distribution Network

**Research by:** Antonis Terefos ( **@Tera0017**) In recent years, threat actors have continuously adapted their tactics to discover new and effective methods for malware distribution. While email remains one of the most prominent infection vectors, its effectiveness has diminished due to widespread deployment of security solutions and increased user awareness. Consequently, […]

Posted by