Date Author Title

AUTHENTICATION BYPASS

2014-03-13Daniel WesemannIdentification and authentication are hard ... finding out intention is even harder
2013-09-18Rob VandenBrinkCisco DCNM Update Released

AUTHENTICATION

2022-02-01/a>Xavier MertensAutomation is Nice But Don't Replace Your Knowledge
2021-11-08/a>Xavier Mertens(Ab)Using Security Tools & Controls for the Bad
2021-10-18/a>Xavier MertensMalicious PowerShell Using Client Certificate Authentication
2021-06-24/a>Xavier MertensDo you Like Cookies? Some are for sale!
2016-09-15/a>Xavier MertensIn Need of a OTP Manager Soon?
2014-03-13/a>Daniel WesemannIdentification and authentication are hard ... finding out intention is even harder
2013-12-20/a>Daniel Wesemannauthorized key lime pie
2013-09-18/a>Rob VandenBrinkCisco DCNM Update Released
2013-03-23/a>Guy BruneauApple ID Two-step Verification Now Available in some Countries
2011-05-18/a>Bojan ZdrnjaAndroid, HTTP and authentication tokens
2010-09-21/a>Johannes UllrichImplementing two Factor Authentication on the Cheap
2010-03-10/a>Rob VandenBrinkMicrosoft re-release of KB973811 - attacks on Extended Protection for Authentication

BYPASS

2022-09-22/a>Xavier MertensRAT Delivered Through FODHelper
2022-06-04/a>Guy BruneauSpam Email Contains a Very Large ISO file
2022-05-20/a>Xavier MertensA 'Zip Bomb' to Bypass Security Controls & Sandboxes
2020-12-29/a>Jan KoprivaWant to know what's in a folder you don't have a permission to access? Try asking your AV solution...
2020-11-25/a>Xavier MertensLive Patching Windows API Calls Using PowerShell
2020-04-04/a>Didier StevensNew Bypass Technique or Corrupt Word Document?
2019-12-26/a>Xavier MertensBypassing UAC to Install a Cryptominer
2019-11-08/a>Xavier MertensMicrosoft Apps Diverted from Their Main Use
2019-07-25/a>Rob VandenBrinkWhen Users Attack! Users (and Admins) Thwarting Security Controls
2017-03-05/a>Didier StevensAnother example of maldoc string obfuscation, with extra bonus: UAC bypass
2016-12-13/a>Xavier MertensUAC Bypass in JScript Dropper
2016-11-16/a>Xavier MertensExample of Getting Analysts & Researchers Away
2015-06-16/a>John BambenekCVE-2014-4114 and an Interesting AV Bypass Technique
2014-03-13/a>Daniel WesemannIdentification and authentication are hard ... finding out intention is even harder
2013-09-18/a>Rob VandenBrinkCisco DCNM Update Released
2012-05-08/a>Bojan ZdrnjaWindows Firewall Bypass Vulnerability and NetBIOS NS
2008-04-22/a>donald smithSymantec decomposer rar bypass allowed malicious content.