
Brian Gorenc
@maliciousinput
Leader of the Zero Day Initiative. Pwn2Own organizer and adjudicator. Trafficker of export-controlled intrusion software. Bug Hunter.
ID: 148015459
25-05-2010 16:28:44
527 Tweet
2,2K Followers
473 Following


A successful #VMware #ESXi demo at #Pwn2Own is worth $150K. Lucas Leong had 2 unauth RCEs in ESXi patched last week. Not only does he break down the details in his latest blog, he went further & wrote a full code execution exploit for one of the bugs. bit.ly/2OgdfiK


CVE-2021-27076: A complex bug that leads to reliable code execution. HexKitchen details this replay-style deserialization attack against #Microsoft #SharePoint. As a reminder, we're paying $50k for SharePoint exploits at #Pwn2Own. bit.ly/3r4CGSt

Here's a quick preview of the Master of Pwn trophy for the upcoming #Pwn2Own. Creatify Shop is adding LEDs to this version, and so far, it looks amazing.

We’re supporting community #security research by partnering with Trend Zero Day Initiative for this year’s #Pwn2Own competition – check out the details and get involved here: bit.ly/396Uwht




An analysis of a #Parallels #Desktop stack clash vulnerabilities. renorobert describes some recently patched bugs and looks at how Binary Ninja’s static data flow capability can be used in automating bug finding tasks. zerodayinitiative.com/blog/2021/9/9/…

Thank you Trend Micro and Trend Zero Day Initiative for supporting #OffensiveCon22 as gold sponsors! offensivecon.org/sponsors/



This year at #BHUSA, Brian Gorenc & The Dustin Childs present “Calculating Risk in the Era of Obscurity: Reading Between the Lines of Security Advisories” - A look at how enterprises can estimate risk in an era where patches aren't what they used to be. blackhat.com/us-22/briefing…




Recapping #Pwn2Own Vancouver 2023. We had an amazing contest and awarded over $1 million (plus a Tesla Model 3) for 27 unique 0-days. Join ZDI's Brian Gorenc and The Dustin Childs as they go through all the highlights of this year's event. youtu.be/c0cS4R0ja-I

Congrats to Mat Powell Michael DePlante and Piotr Bazydło for making the list.
