It seems it is back to the old ways... It's a bit old news but again 0days full dumps without reporting first...
https://thehackernews.com/2019/06/windows-eop-exploit.html
https://thehackernews.com/2019/05/microsoft-zero-day-vulnerability.html
GitHub links don't work though, seems deleted.
|