Browsing tag

Pwn2Own

Act Now: CISA Flags Active Exploitation of Microsoft SharePoint Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical security vulnerability impacting Microsoft SharePoint Server to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The issue, tracked as CVE-2023-29357 (CVSS score: 9.8), is a privilege escalation flaw that could be exploited by an attacker to gain administrator privileges. Microsoft […]

iPhone 13 Pro, Windows, Chrome, Linux and others pwned at Tianfu Cup

Tianfu Cup is the Chinese version of the Pwn2own in which hackers from Kunlun Lab managed to secure first place by hacking iPhone 13 through a vulnerability in the Safari mobile browser. The Chinese version of the Pwn2own hacking competition called Tianfu Cup took place from Oct. 16 to Oct. 17 in Chengdu, China. The […]

Chinese Hackers Win $382,500 For Hacking KVM On Ubuntu, Edge, Adobe Reader

In 2018, the Chinese government barred Chinese security researchers from participating in hacking contests in foreign countries in a bid to keep the knowledge of disclosing software vulnerabilities in China itself. The decision affected popular hacking contests like Pwn2Own that were mostly dominated by Chinese participants. As a response to the ban, the Chinese government […]

Xiaomi, Amazon Echo, Sony & Samsung Smart TVs pwned at Pwn2Own

Hackathons happen to be an all-out favorite for the cybersecurity industry for their renewed sense of competing in real-time – testing your skillset against the best. Pwn2Own, one such yearly conference kicked off today in Tokyo with teams competing in exploiting bugs in the systems of well-reputed companies. Pwn2Own follows an infrastructure in which if […]

Firefox, Edge, Safari, And Tesla Hacked At Pwn2Own 2019

Earlier this week, Pwn2Own Vancouver 2019 kicked off with participants from all around the world. This year was the first time in the contest’s history to include an automotive category. The event was sponsored by Microsoft, VMware, and Tesla. Over the course of three days, numerous events were organized that took down various software and […]

Pwn2Own 2019 – Apple Safari, VirtualBox, VMware Hacked – Ethical Hackers Earned $240,000 by Submitting Zero-day’s

Trend Micro’s Zero Day Initiative (ZDI) vulnerability research contest Pwn2Own 2019 Successfully started its first-day contest and the team of researchers earned $240,000 in the first day alone for the successful zero-day Submissions. Trend Micro announced $1 million in cash and prizes through the contest for the researchers who submit the zero days the specific […]

Bug bounty: Hack Tesla Model 3 to win your own Model 3

Tesla is partnering with Pwn2Own’s bug bounty to identify vulnerabilities in its Model 3 car software. Electric car maker Tesla announced recently that the company is partnering with Pwn2Own hacking contest organizers in order to help the company identify security issues in its automobiles. Tesla will be a partner in the Pwn2Own bug bounty program […]

iPhone X, Xiaomi Mi 6 & Samsung Galaxy S9 hacked at Pwn2Own

White hat hackers and IT security researchers have once again proved their elite skills at Pwn2Own 2018 after exposing critical security vulnerabilities in products developed by popular vendors like Apple, Samsung, and Xiaomi. Pwn2Own is organized by cybersecurity giant Trend Micro’s Zero Day Initiative in Tokyo where hackers took part in exploiting zero-day flaws in products developed by […]

The Weak Bug – Exploiting a Heap Overflow in VMware

Introduction In march 2017, I took part in the pwn2own contest with team Chaitin Security Research Lab. The target I was focused on was VMware Workstation Pro and we managed to get a working exploit before the contest. Unfortunately, a version of VMware was released on March 14th, the day before the contest, with a patch for the […]

Ubuntu Linux, Safari, Adobe Reader, And Edge Hacked At Pwn2Own 2017

Short Bytes: At the Trend Micro-sponsored Pwn2Own 2017 competition, the security researchers were able to hack many popular software and applications like Ubuntu, Safari, Microsoft Edge, and Adobe Reader. This year’s hacking event features 11 contestant teams and 30 attempts in total. The Pwn2Own hacking competition began on March 15. It’s sponsored by the security firm […]