
Michael Stepankin
@artsploit
Followers
7K
Following
1K
Media
24
Statuses
294
Security Researcher at @GHSecurityLab
London, England
Joined July 2014
RT @watchtowrcyber: The industry is ablaze w speculation around yesterday's publicly disclosed Veeam Software Backup & Replication RCE vuln….
0
56
0
Just submitted a CFP to @ekoparty where I want to talk about breaking Maven repository managers. This is the one of the craziest and fruitful research projects I've done in my career.
3
3
43
RT @tincho_508: So happy to had the chance to present for second time at #BlackHat USA!. I’m already receiving a lot of messages from peopl….
0
59
0
RT @sourceincite: Time to retire some content!. JNDI Injection Remote Code Execution via Path Manipulation in MemoryUserDatabaseFactory: h….
0
46
0
RT @GHSecurityLab: 🚨 New Blog Alert! 🚨.Can an attacker execute commands by sending JSON? Learn how unsafe deserialization vulnerabilities i….
0
20
0
RT @mmolgtm: In this post I'll use CVE-2023-6241, a vulnerability in the Arm Mali GPU that I reported last November to gain arbitrary kerne….
0
147
0
RT @infosec_au: The SSRF/auth bypass affecting Ivanti Pulse Connect Secure (CVE-2024-21893), is a great example of what can be achieved wit….
0
88
0
RT @pwntester: Discover the latest insights from our @GHSecurityLab team’s audit on @home_assistant security! 🛡️.#C….
0
18
0
RT @mmolgtm: In this post I'll use CVE-2023-4069, a type confusion bug in the Maglev JIT compiler of Chrome that I reported in July, to gai….
0
102
0
RT @kevin_backhouse: Video of my PoC for CVE-2023-43641: out-of-bounds array access in libcue. libcue is used by tracker-miners, which auto….
0
107
0
Some ideas on how to attack and protect mTLS and certificate authentication in my recent blogpost.
Unravel some hidden vulnerabilities in mTLS systems with @artsploit. As presented at @BlackHatEvents and @defcon this year, the research is now available in our blog.
2
7
28
RT @GHSecurityLab: If you're at #BHUSA, don't miss @artsploit 's presentation mTLS: When Certificate Authentication is Done Wrong at 2:30pm….
0
7
0