<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <id>https://defion.security/feeds/en/research.xml</id>
    <title>DEFION Research Labs</title>
    <updated>2025-07-21T12:00:00Z</updated>
    <generator>DEFION Security website</generator>
    <link rel="alternate" href="https://defion.security/en/research-labs/"/>
    <link rel="self" href="https://defion.security/feeds/en/research.xml"/>
    <subtitle>DEFION Research Labs blends cutting-edge security research with real-time threat intelligence to stay ahead of modern adversaries. Our mission goes beyond technology: we actively contribute to societal security through public–private collaboration, ensuring our insights deliver real-world impact.</subtitle>
    <author><name>DEFION Research Labs</name><uri>https://defion.security/en/research-labs/</uri></author>
    <entry>
        <id>https://defion.security/en/research-labs/ruckus-unleashed-multiple-vulnerabilities-exploited/</id>
        <title>Ruckus Unleashed: Multiple vulnerabilities exploited</title>
        <updated>2025-07-21T12:00:00Z</updated>
        <published>2025-07-21T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/ruckus-unleashed-multiple-vulnerabilities-exploited/"/>
        <summary>Ruckus Unleashed: Multiple vulnerabilities exploited</summary>
        <category term="Vulnerability Research"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-autel-maxicharger/</id>
        <title>Pwn2Own Automotive 2024: Hacking the Autel MaxiCharger</title>
        <updated>2024-09-05T12:00:00Z</updated>
        <published>2024-09-05T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-autel-maxicharger/"/>
        <summary>Pwn2Own Automotive 2024: Hacking the Autel MaxiCharger</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-juicebox-40/</id>
        <title>Pwn2Own Automotive 2024: Hacking the JuiceBox 40</title>
        <updated>2024-08-29T12:00:00Z</updated>
        <published>2024-08-29T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-juicebox-40/"/>
        <summary>Pwn2Own Automotive 2024: Hacking the JuiceBox 40</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-chargepoint-home-flex-and-their-cloud/</id>
        <title>Pwn2Own Automotive 2024: Hacking the ChargePoint Home Flex (and their cloud...)</title>
        <updated>2024-08-08T12:00:00Z</updated>
        <published>2024-08-08T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-automotive-2024-hacking-the-chargepoint-home-flex-and-their-cloud/"/>
        <summary>Pwn2Own Automotive 2024: Hacking the ChargePoint Home Flex (and their cloud...)</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/donex-darkrace-ransomware-decryptor/</id>
        <title>DoNex/DarkRace Ransomware Decryptor</title>
        <updated>2024-07-25T12:00:00Z</updated>
        <published>2024-07-25T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/donex-darkrace-ransomware-decryptor/"/>
        <summary>DoNex/DarkRace Ransomware Decryptor</summary>
        <category term="Ransomware"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/cve-2024-20693-windows-cached-code-signature-manipulation/</id>
        <title>CVE-2024-20693: Windows cached code signature manipulation</title>
        <updated>2024-06-14T12:00:00Z</updated>
        <published>2024-06-14T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/cve-2024-20693-windows-cached-code-signature-manipulation/"/>
        <summary>CVE-2024-20693: Windows cached code signature manipulation</summary>
        <category term="Windows Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/bringing-process-injection-into-view-s-exploiting-all-macos-apps-using-nib-files/</id>
        <title>Bringing process injection into view(s): exploiting all macOS apps using nib files</title>
        <updated>2024-04-05T12:00:00Z</updated>
        <published>2024-04-05T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/bringing-process-injection-into-view-s-exploiting-all-macos-apps-using-nib-files/"/>
        <summary>Bringing process injection into view(s): exploiting all macOS apps using nib files</summary>
        <category term="macOS Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/don-t-talk-all-at-once-elevating-privileges-on-macos-by-audit-token-spoofing/</id>
        <title>Don&#x27;t Talk All at Once! Elevating Privileges on macOS by Audit Token Spoofing</title>
        <updated>2023-10-13T12:00:00Z</updated>
        <published>2023-10-13T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/don-t-talk-all-at-once-elevating-privileges-on-macos-by-audit-token-spoofing/"/>
        <summary>Don&#x27;t Talk All at Once! Elevating Privileges on macOS by Audit Token Spoofing</summary>
        <category term="iOS &amp; macOS"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/getting-system-on-windows-in-style/</id>
        <title>Getting SYSTEM on Windows in style</title>
        <updated>2023-09-28T12:00:00Z</updated>
        <published>2023-09-28T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/getting-system-on-windows-in-style/"/>
        <summary>Getting SYSTEM on Windows in style</summary>
        <category term="Windows Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/technical-analysis-of-the-genesis-market/</id>
        <title>Technical analysis of the Genesis Market</title>
        <updated>2023-04-05T12:00:00Z</updated>
        <published>2023-04-05T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/technical-analysis-of-the-genesis-market/"/>
        <summary>Technical analysis of the Genesis Market</summary>
        <category term="Malware Analysis"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/bad-things-come-in-large-packages-pkg-signature-verification-bypass-on-macos/</id>
        <title>Bad things come in large packages: .pkg signature verification bypass on macOS</title>
        <updated>2023-01-13T12:00:00Z</updated>
        <published>2023-01-13T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/bad-things-come-in-large-packages-pkg-signature-verification-bypass-on-macos/"/>
        <summary>Bad things come in large packages: .pkg signature verification bypass on macOS</summary>
        <category term="macOS Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-miami-2022-iconics-genesis64-arbitrary-code-execution/</id>
        <title>Pwn2Own Miami 2022: ICONICS GENESIS64 Arbitrary Code Execution</title>
        <updated>2022-10-17T12:00:00Z</updated>
        <published>2022-10-17T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-miami-2022-iconics-genesis64-arbitrary-code-execution/"/>
        <summary>Pwn2Own Miami 2022: ICONICS GENESIS64 Arbitrary Code Execution</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-miami-2022-unified-automation-c-demo-server-dos/</id>
        <title>Pwn2Own Miami 2022: Unified Automation C++ Demo Server DoS</title>
        <updated>2022-09-14T12:00:00Z</updated>
        <published>2022-09-14T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-miami-2022-unified-automation-c-demo-server-dos/"/>
        <summary>Pwn2Own Miami 2022: Unified Automation C++ Demo Server DoS</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-miami-2022-aveva-edge-arbitrary-code-execution/</id>
        <title>Pwn2Own Miami 2022: AVEVA Edge Arbitrary Code Execution</title>
        <updated>2022-09-08T12:00:00Z</updated>
        <published>2022-09-08T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-miami-2022-aveva-edge-arbitrary-code-execution/"/>
        <summary>Pwn2Own Miami 2022: AVEVA Edge Arbitrary Code Execution</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/process-injection-breaking-all-macos-security-layers-with-a-single-vulnerability/</id>
        <title>Process injection: breaking all macOS security layers with a single vulnerability</title>
        <updated>2022-08-12T12:00:00Z</updated>
        <published>2022-08-12T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/process-injection-breaking-all-macos-security-layers-with-a-single-vulnerability/"/>
        <summary>Process injection: breaking all macOS security layers with a single vulnerability</summary>
        <category term="macOS Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-miami-2022-inductive-automation-ignition-remote-code-execution/</id>
        <title>Pwn2Own Miami 2022: Inductive Automation Ignition Remote Code Execution</title>
        <updated>2022-07-22T12:00:00Z</updated>
        <published>2022-07-22T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-miami-2022-inductive-automation-ignition-remote-code-execution/"/>
        <summary>Pwn2Own Miami 2022: Inductive Automation Ignition Remote Code Execution</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/pwn2own-miami-2022-opc-ua-net-standard-trusted-application-check-bypass/</id>
        <title>Pwn2Own Miami 2022: OPC UA .NET Standard Trusted Application Check Bypass</title>
        <updated>2022-07-19T12:00:00Z</updated>
        <published>2022-07-19T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/pwn2own-miami-2022-opc-ua-net-standard-trusted-application-check-bypass/"/>
        <summary>Pwn2Own Miami 2022: OPC UA .NET Standard Trusted Application Check Bypass</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/coronacheck-app-tls-certificate-vulnerabilities/</id>
        <title>CoronaCheck App TLS certificate vulnerabilities</title>
        <updated>2022-02-03T12:00:00Z</updated>
        <published>2022-02-03T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/coronacheck-app-tls-certificate-vulnerabilities/"/>
        <summary>CoronaCheck App TLS certificate vulnerabilities</summary>
        <category term="Vulnerability Research"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/xenserver-path-traversal-leading-to-authentication-bypass/</id>
        <title>Xenserver Path Traversal Leading To Authentication Bypass</title>
        <updated>2022-01-01T12:00:00Z</updated>
        <published>2022-01-01T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/xenserver-path-traversal-leading-to-authentication-bypass/"/>
        <summary>Xenserver Path Traversal Leading To Authentication Bypass</summary>
        <category term="Infrastructure Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/sandbox-escape-privilege-escalation-in-storeprivilegedtaskservice/</id>
        <title>Sandbox escape + privilege escalation in StorePrivilegedTaskService</title>
        <updated>2021-12-21T12:00:00Z</updated>
        <published>2021-12-21T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/sandbox-escape-privilege-escalation-in-storeprivilegedtaskservice/"/>
        <summary>Sandbox escape + privilege escalation in StorePrivilegedTaskService</summary>
        <category term="macOS Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/proctorio-chrome-extension-universal-cross-site-scripting/</id>
        <title>Proctorio Chrome extension Universal Cross-Site Scripting</title>
        <updated>2021-12-14T12:00:00Z</updated>
        <published>2021-12-14T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/proctorio-chrome-extension-universal-cross-site-scripting/"/>
        <summary>Proctorio Chrome extension Universal Cross-Site Scripting</summary>
        <category term="Web Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/zoom-rce-from-pwn2own-2021/</id>
        <title>Zoom RCE from Pwn2Own 2021</title>
        <updated>2021-08-23T12:00:00Z</updated>
        <published>2021-08-23T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/zoom-rce-from-pwn2own-2021/"/>
        <summary>Zoom RCE from Pwn2Own 2021</summary>
        <category term="Pwn2Own"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/ios-vpn-support-3-different-bugs/</id>
        <title>iOS VPN support: 3 different bugs</title>
        <updated>2020-10-07T12:00:00Z</updated>
        <published>2020-10-07T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/ios-vpn-support-3-different-bugs/"/>
        <summary>iOS VPN support: 3 different bugs</summary>
        <category term="iOS Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/sign-in-with-apple-authentication-bypass/</id>
        <title>Sign in with Apple - authentication bypass</title>
        <updated>2020-07-01T12:00:00Z</updated>
        <published>2020-07-01T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/sign-in-with-apple-authentication-bypass/"/>
        <summary>Sign in with Apple - authentication bypass</summary>
        <category term="Web Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/jenkins-authentication-bypass/</id>
        <title>Jenkins - authentication bypass</title>
        <updated>2020-01-30T12:00:00Z</updated>
        <published>2020-01-30T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/jenkins-authentication-bypass/"/>
        <summary>Jenkins - authentication bypass</summary>
        <category term="Web Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/dns-rebinding-for-https/</id>
        <title>DNS rebinding for HTTPS</title>
        <updated>2019-11-25T12:00:00Z</updated>
        <published>2019-11-25T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/dns-rebinding-for-https/"/>
        <summary>DNS rebinding for HTTPS</summary>
        <category term="Web Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/spring-security-insufficient-cryptographic-randomness/</id>
        <title>Spring Security - insufficient cryptographic randomness</title>
        <updated>2019-07-04T12:00:00Z</updated>
        <published>2019-07-04T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/spring-security-insufficient-cryptographic-randomness/"/>
        <summary>Spring Security - insufficient cryptographic randomness</summary>
        <category term="Cryptography"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/volkswagen-auto-group-mib-infotainment-system-unauthenticated-remote-code-execution-as-root/</id>
        <title>Volkswagen Auto Group MIB infotainment system - unauthenticated remote code execution as root</title>
        <updated>2018-07-19T12:00:00Z</updated>
        <published>2018-07-19T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/volkswagen-auto-group-mib-infotainment-system-unauthenticated-remote-code-execution-as-root/"/>
        <summary>Volkswagen Auto Group MIB infotainment system - unauthenticated remote code execution as root</summary>
        <category term="Automotive Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/napalm-command-execution-on-naplm-controller-from-host/</id>
        <title>NAPALM - command execution on NAPLM controller from host</title>
        <updated>2017-07-12T12:00:00Z</updated>
        <published>2017-07-12T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/napalm-command-execution-on-naplm-controller-from-host/"/>
        <summary>NAPALM - command execution on NAPLM controller from host</summary>
        <category term="Infrastructure Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/mysql-connector-j-unexpected-deserialisation-of-java-objects/</id>
        <title>MySQL Connector/J - Unexpected deserialisation of Java objects</title>
        <updated>2017-04-25T12:00:00Z</updated>
        <published>2017-04-25T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/mysql-connector-j-unexpected-deserialisation-of-java-objects/"/>
        <summary>MySQL Connector/J - Unexpected deserialisation of Java objects</summary>
        <category term="Java Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/ansible-command-execution-on-ansible-controller-from-host/</id>
        <title>Ansible - command execution on Ansible controller from host</title>
        <updated>2017-01-09T12:00:00Z</updated>
        <published>2017-01-09T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/ansible-command-execution-on-ansible-controller-from-host/"/>
        <summary>Ansible - command execution on Ansible controller from host</summary>
        <category term="Infrastructure Security"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/observium-unauthenticated-remote-code-execution/</id>
        <title>Observium - unauthenticated remote code execution</title>
        <updated>2016-11-10T12:00:00Z</updated>
        <published>2016-11-10T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/observium-unauthenticated-remote-code-execution/"/>
        <summary>Observium - unauthenticated remote code execution</summary>
        <category term="Vulnerability Research"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/csrp-srpforjava-obtaining-of-hashed-passwords/</id>
        <title>cSRP/srpforjava - obtaining of hashed passwords</title>
        <updated>2016-08-18T12:00:00Z</updated>
        <published>2016-08-18T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/csrp-srpforjava-obtaining-of-hashed-passwords/"/>
        <summary>cSRP/srpforjava - obtaining of hashed passwords</summary>
        <category term="Cryptography"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
    <entry>
        <id>https://defion.security/en/research-labs/startencrypt-obtaining-valid-ssl-certificates-for-unauthorized-domains/</id>
        <title>StartEncrypt - obtaining valid SSL certificates for unauthorized domains</title>
        <updated>2016-06-30T12:00:00Z</updated>
        <published>2016-06-30T12:00:00Z</published>
        <link rel="alternate" href="https://defion.security/en/research-labs/startencrypt-obtaining-valid-ssl-certificates-for-unauthorized-domains/"/>
        <summary>StartEncrypt - obtaining valid SSL certificates for unauthorized domains</summary>
        <category term="Vulnerability Research"/>
        <author><name>DEFION Research Labs</name></author>
    </entry>
</feed>