Back to directory
WRITEUP #889

“Please do not make it public” - Vulnerabilities in Sogou Keyboard encryption expose keypresses to network eavesdropping

OtherCryptographic issuesPadding oracle attackWindowsAndroidiOS
byJeffrey Knockel
Program
Tencent
Published
Aug 9, 2023
Added to HackDex
Aug 21, 2023
Read Full Writeuphttps://citizenlab.ca/2023/08/vulnerabilities-in-sogou-keyboard-encryption/
RELATED WRITEUPS
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
When Certificates Fail: A Story of Bypassed MFA in Remote Access
Other2FA / MFA bypass
SSTI in Bug Bounty Program: The Time I Played with Handlebars and Broke Stuff
OtherSSTI
Ghost In The Ppl Part 1: Byovdll
OtherUse-After-Free
Part 2: From Byovdll To Arbitrary Code Execution In Lsass
OtherUse-After-Free

Built with ❤️ by Shubham Rawat