Khoa Dinh Profile
Khoa Dinh

@_l0gg

Followers
2K
Following
409
Media
5
Statuses
66

Joined April 2021
Don't wanna be here? Send us removal request.
@_l0gg
Khoa Dinh
1 month
Blog for ToolShell.Disclaimer: The content of this blog is provided for educational and informational purposes only. #SharePoint #ToolShell
Tweet media one
10
82
248
@_l0gg
Khoa Dinh
14 days
CVE-2025-53770 requires authentication. They stated the attack vector incorrectly again. Blog may published later, but I’m not sure yet.
0
1
17
@grok
Grok
19 days
Blazing-fast image creation – using just your voice. Try Grok Imagine.
284
566
3K
@_l0gg
Khoa Dinh
14 days
Turn out CVE-2025-53770 is mine. I report it to MSRC after July patch released. @msftsecresponse say it OutofScope because I use the same deser payload at different endpoint which they weren’t aware of. I tried my best to mitigate the exploit and all I got is a thank, nice reward.
2
8
112
@_l0gg
Khoa Dinh
1 month
Kudos to my teammate @pivik_ for demonstrating this exploit.
0
1
7
@_l0gg
Khoa Dinh
1 month
RT @vcslab: 🚨 Shocking impact from the SharePoint vulnerability we found at Pwn2Own! 😱.Despite our efforts to patch it 🤝, many systems are….
0
9
0
@_l0gg
Khoa Dinh
1 month
Viettel Threat Intelligence guideline to protect, prevention strategies, detection patterns and threat hunting techniques:.
@vcslab
VCSLab
1 month
🚨 Shocking impact from the SharePoint vulnerability we found at Pwn2Own! 😱.Despite our efforts to patch it 🤝, many systems are still at risk ⚠️. Secure yours now! 🔒 Details:
0
1
4
@_l0gg
Khoa Dinh
1 month
alert and recommendations.
1
0
6
@_l0gg
Khoa Dinh
1 month
You also may want to read this.
@_l0gg
Khoa Dinh
2 months
While waiting for the Pwn2Own chain, you might want to read this. Disclaimer: This is a bug I discovered by accident, and already been resolved. I’m not sure which CVE or patch this maps to. If you know any information, please feel free to leave a comment.
Tweet media one
1
0
3
@_l0gg
Khoa Dinh
1 month
Viettel Cyber Security Press Release for Customer alert, Latest research and Recommendations. Blog is comming.#SharePoint #ToolShell
Tweet media one
0
4
26
@_l0gg
Khoa Dinh
1 month
Sorry I was lagging, the patch for SharePoint 2019 is out:.
0
0
9
@_l0gg
Khoa Dinh
2 months
Nice @pivik_ 🎉🎉.
@TheZDIBugs
TheZDIBugs
2 months
[ZDI-25-600|CVE-2025-53028] (Pwn2Own) Oracle VirtualBox VMSVGA Out-Of-Bounds Write Local Privilege Escalation Vulnerability (CVSS 8.2; Credit: Viettel Cyber Security)
1
1
13
@_l0gg
Khoa Dinh
2 months
The bug in my previous blog is CVE-2024-38018 of @chudyPB 🫡. Really want to update the blog & tweet but I can't 😅.
Tweet card summary image
zerodayinitiative.com
Microsoft SharePoint SPThemes Deserialization of Untrusted Data Remote Code Execution Vulnerability
@chudyPB
Piotr Bazydło
2 months
Writeup of my SharePoint RCE: CVE-2024-38018. ZDI decided not to publish the blog and I didn't find time to write a new one 😅. Enjoy @_l0gg analysis!.
0
3
19
@_l0gg
Khoa Dinh
2 months
While waiting for the Pwn2Own chain, you might want to read this. Disclaimer: This is a bug I discovered by accident, and already been resolved. I’m not sure which CVE or patch this maps to. If you know any information, please feel free to leave a comment.
Tweet media one
3
40
139
@_l0gg
Khoa Dinh
2 months
RT @codewhitesec: We have reproduced "ToolShell", the unauthenticated exploit chain for CVE-2025-49706 + CVE-2025-49704 used by @_l0gg to p….
0
161
0
@_l0gg
Khoa Dinh
2 months
FAQ: .- Why run mspaint? I can't be onsite, so the static payload can run on any OS. ysoserial require windows.- Why it take two attempt at Pwn2Own? At first attempt the command to run the exploit is missing the siteurl part :)).I'm writing the blog, this is it right now:
Tweet media one
0
1
18
@_l0gg
Khoa Dinh
2 months
The SharePoint patch for Pwn2Own Berlin has been released - patch ASAP.The exploit need only one request💣.I’d name this bug ToolShell - ZDI did say the endpoint is ToolPane after all😅.#CVE_2025_49706 #CVE_2025_49704 #SharePoint #Pwn2Own
Tweet media one
5
40
201
@_l0gg
Khoa Dinh
4 months
RT @thezdi: Confirmed!! Dinh Ho Anh Khoa (@_l0gg) of Viettel Cyber Security combined an auth bypass and an insecure deserialization bug to….
0
21
0
@_l0gg
Khoa Dinh
4 months
Write-up cho bài đăng của anh @tuo4n8. Chuyện đã lâu rồi có nhiều thứ mình không còn nhớ. - No outbound Gadgets for CVE-2019-16891. - New JDBC attack chain. For English speakers, please use Google Translate.
2
15
43
@_l0gg
Khoa Dinh
5 months
RT @tuo4n8: After many bypass attempts and creating several gadgets for RCE on @Apple, and after a looooooooong wait… we finally got it! @_….
0
39
0
@_l0gg
Khoa Dinh
10 months
Share cho người em.
@pivik_
Khang Phan
10 months
Yay! My first time at Pwn2Own!.Just to avoid any confusion, the correct credit would be me (pivik) and ExLuck (@ExLuck99).
1
0
11