- cross-posted to:
- cybersecurity@sh.itjust.works
- cross-posted to:
- cybersecurity@sh.itjust.works
They’ve chained 4 logic bugs to achieve RCE in CS:GO, pretty impressive. Valve sucks at communication and bug bounty payouts though.
They’ve chained 4 logic bugs to achieve RCE in CS:GO, pretty impressive. Valve sucks at communication and bug bounty payouts though.
Wow that was a fantastic read, love how much detail they went into for how they went about hunting for these.
There were a lot of good sources to get the debug symbols for an old game like CSGO but they were very impressive, comprehensive and meticulous. It’s great to see that in combination with their process transparency.