3024 | Pentest-Story: Empirum password decryption |
Weak crypto
Reverse engineering |
Matrix42 |
evait security GmbH (@evait_security) |
Bug Bounty | 2020-11-16 | 2023-06-13 |
2843 | Applying Offensive Reverse Engineering to Facebook Gameroom |
Insecure deserialization |
Meta / Facebook |
Eugene Lim (@spaceraccoonsec) |
Bug Bounty | 2021-02-02 | 2023-06-13 |
926 | Reverse Engineering the Apple Multipeer Connectivity Framework |
Authorization flaw
Reverse engineering
Networking |
Apple |
Simone Margaritelli (@evilsocket) |
Bug Bounty | 2022-10-20 | 2023-06-13 |
518 | Reversing UK mobile rail tickets |
Reverse engineering
Android |
NA |
Zeeshan Mustafa (@by6153) |
Bug Bounty | 2023-01-31 | 2023-06-13 |
186 | Impersonating Other Players with UDP Spoofing in Mirror |
Game hacking
UDP spoofing
Reverse engineering |
Unity (Mirror) |
IncludeSec (@IncludeSecurity) |
Bug Bounty | 2023-04-18 | 2023-06-13 |
165 | Compromising Garmin’s Sport Watches: A Deep Dive into GarminOS and its MonkeyC Virtual Machine |
IoT
Memory corruption
Buffer Overflow
Integer overflow
Out-of-bounds Read
Out-of-bounds Write
Type confusion
Permission bypass
Reverse engineering |
Garmin |
Tao Sauvage |
Bug Bounty | 2023-04-21 | 2023-06-13 |
88 | FriendlyName’ Buffer Overflow Vulnerability in Wemo Smart Plug V2 |
IoT
Buffer Overflow
Memory corruption
Reverse engineering |
Belkin (Wemo) |
Amit Serper (@0xAmit) |
Bug Bounty | 2023-05-16 | 2023-06-13 |
56 | Hacking my “smart” toothbrush |
IoT
Reverse engineering
NFC |
NA |
Cyrill Künzi |
Bug Bounty | 2023-05-24 | 2023-06-13 |
39 | Reverse Engineering Coin Hunt World’s Binary Protocol |
Reverse engineering
Spoofing |
Coin Hunt World |
qkchambers |
Bug Bounty | 2023-05-31 | 2023-06-13 |