EXODUS BLOG


News

Vulnerability Development Courses for 2021

AUGUST 16, 2021
UPDATE: Postponed. Unfortunately due to travel restrictions related to COVID we will be postponing these trainings until February 14, 2022. We are contacting current registered students and giving them the option of a refund...
Read More

Fuzzing Grammars in Python: gramfuzz

JANUARY 3, 2017
Grammar-based fuzzing is not new, nor is my grammar-based fuzzer; however, this is my fifth, best, and favorite rewrite of it. My grammar fuzzer started with the original version in ruby, and then over the years...
Read More

Firmware Updates Made Easy

SEPTEMBER 8, 2016
Contributors: David Barksdale of Exodus Intelligence, Independent Security Researcher Jeremy Brown These are two vulnerabilities that allow a remote unauthenticated attacker to update firmware. If the device is configured with MAC or IP filtering, the...
Read More

VxWorks: Execute My Packets

AUGUST 9, 2016
Contributors David Barksdale and Alex Wheeler 1. Background Earlier this year we reported 3 vulnerabilities in VxWorks to Wind River. Each of these vulnerabilities can be exploited by anonymous remote attackers on the same network without...
Read More