writeups.xyz writeups.xyz / Wladimir Palant (@WPalant)

Title Vulnerabilities Programs Authors
Adobe Acrobat hollowing out same-origin policy
Party time: Injecting code into Teleparty extension
Skype extension: All functionality broken? Still exploitable!
Yes, fun browser extensions can have vulnerabilities too!
Exploiting Bitdefender Antivirus: RCE from any website
Pwning Avast Secure Browser for fun and profit
Kaspersky in the Middle – what could possibly go wrong?
Should you be concerned about LastPass uploading your passwords to its server?