Épisodes

  • Ep.94 - February 2024: Vulremi, Vuldetta, PT VM Course relaunch, PT TrendVulns digests, Ivanti, Fortinet, MSPT, Linux PW
    Mar 5 2024
    Hello everyone! In this episode, I will talk about the February updates of my open source projects, also about projects at my main job at Positive Technologies and interesting vulnerabilities. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    9 min
  • Ep.93 - November 2023 – January 2024: New Vulristics Features, 3 Months of Microsoft Patch Tuesdays and Linux Patch Wednesdays, Year 2023 in Review
    Feb 1 2024
    Hello everyone! It has been 3 months since the last episode. I spent most of this time improving my Vulristics project. So in this episode, let’s take a look at what’s been done. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    20 min
  • Ep.92 - October 2023: back to Positive Technologies, Vulristics updates, Linux Patch Wednesday, Microsoft Patch Tuesday, PhysTech VM lecture
    Nov 5 2023
    Hello everyone! October was an interesting and busy month for me. I started a new job, worked on my open source Vulristics project, and analyzed vulnerabilities using it. Especially Linux vulnerabilities as part of my new Linux Patch Wednesday project. And, of course, analyzed Microsoft Patch Tuesday as well. In addition, at the end of October I was a guest lecturer at MIPT/PhysTech university. But first thing first. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    13 min
  • Ep.91 - September 2023: VM courses, Bahasa Indonesia, Russian Podcasts, Goodbye Tinkoff, MS Patch Tuesday, Qualys TOP 20, Linux, Forrester, GigaOm, R-Vision VM
    Sep 30 2023
    Hello everyone! On the last day of September, I decided to record another retrospective episode on how my Vulnerability Management month went. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    11 min
  • Ep.90 - August 2023: GitHub PoCs, Vulristics, Qualys First-Party, Tenable ExposureAI, SC Awards and Rapid7, Anglo-Saxon list, MS Patch Tuesday, WinRAR, Juniper
    Aug 30 2023
    Hello everyone! This month I decided NOT to make an episode completely dedicated to Microsoft Patch Tuesday. Instead, this episode will be an answer to the question of how my Vulnerability Management month went. A retrospection of some kind. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    16 min
  • Ep.89 - Microsoft Patch Tuesday July 2023: Vulristics improvements, Office RCE, SFB SmartScreen and Outlook, EoP MSHTML and ERS, other RCEs
    Jul 28 2023
    Hello everyone! This episode will be about Microsoft Patch Tuesday for July 2023, including vulnerabilities that were added between June and July Patch Tuesdays. As usual, I use my open source Vulristics project to analyse and prioritize vulnerabilities. I optimized the detection of the vulnerable product and the type of vulnerability based on the description. Now processing already downloaded data (with option –rewrite-flag "False") takes a few seconds. For example, only ~3 seconds for 100 MS Patch Tuesday vulnerabilities. It used to take a few minutes. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    13 min
  • Ep.88 - Microsoft Patch Tuesday June 2023: Edge type confusion, Git RCE, OneNote Spoofing, PGM RCE, Exchange RCE, SharePoint EoP
    Jun 25 2023
    Hello everyone! This episode will be about Microsoft Patch Tuesday for June 2023, including vulnerabilities that were added between May and June Patch Tuesdays. This time there were only 3 vulnerabilities used in attacks or with a public exploit. And only one of them is more or less relevant. Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    7 min
  • Ep.87 - Microsoft Patch Tuesday May 2023: Microsoft Edge, BlackLotus Secure Boot SFB, OLE RCE, Win32k EoP, NFS RCE, PGM RCE, LDAP RCE, SharePoint RCE
    May 28 2023
    Hello everyone! This episode will be about Microsoft Patch Tuesday for May 2023, including vulnerabilities that were added between April and May Patch Tuesdays. It’s been a long time since we’ve had such tiny Patch Tuesday. 57 CVEs, including CVEs appeared during the month. And only 38 without them! 😄 Watch the video version of this episode on my YouTube channel. Read the full text of this episode with all links on avleonov.com blog.
    Afficher plus Afficher moins
    8 min