Premium Only Content
CVE-2022-4510: Directory Traversal RCE in binwalk
A path traversal vulnerability (CVE-2022-4510) was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 (inclusive). This vulnerability allows remote attackers to execute arbitrary code on affected installations of binwalk. User interaction is required to exploit this vulnerability in that the target must open the malicious file with binwalk using extract mode (-e option). The issue lies within the PFS (obscure filesystem format found in some embedded devices) extractor plugin that was merged into binwalk in 2017. Write-ups/tutorials aimed at beginners - Hope you enjoy 🙂 #Vulnerability #CVE-2022-4510 #Pentesting #OffSec
↢Social Media↣
Twitter: https://twitter.com/_CryptoCat
GitHub: https://github.com/Crypto-Cat
HackTheBox: https://app.hackthebox.eu/profile/11897
LinkedIn: https://www.linkedin.com/in/cryptocat
Reddit: https://www.reddit.com/user/_CryptoCat23
YouTube: https://www.youtube.com/CryptoCat23
Twitch: https://www.twitch.tv/cryptocat23
↢Video-Specific Resources↣
https://onekey.com/blog/security-advisory-remote-command-execution-in-binwalk
https://lekensteyn.nl/files/pfs/pfs.txt
https://github.com/ReFirmLabs/binwalk/pull/617
↢Resources↣
Ghidra: https://ghidra-sre.org/CheatSheet.html
Volatility: https://github.com/volatilityfoundation/volatility/wiki/Linux
PwnTools: https://github.com/Gallopsled/pwntools-tutorial
CyberChef: https://gchq.github.io/CyberChef
DCode: https://www.dcode.fr/en
HackTricks: https://book.hacktricks.xyz/pentesting-methodology
CTF Tools: https://github.com/apsdehal/awesome-ctf
Forensics: https://cugu.github.io/awesome-forensics
Decompile Code: https://www.decompiler.com
Run Code: https://tio.run
↢Chapters↣
Start: 0:00
Overview: 0:41
PFS (pfstool): 1:50
Vulnerability Breakdown: 2:46
Exploitation Details: 4:20
Proof of Concept (PoC): 6:56
CTF Use Cases: 11:29
End: 12:10
-
LIVE
The Big Migâ„¢
1 hour agoEpstein Files Fallout, UK Arrests 1 vs U.S. Arrests 0
3,200 watching -
LIVE
Nikko Ortiz
34 minutes agoReaction Time... | Rumble LIVE
146 watching -
LIVE
LONEWOLFanCUB
4 hours ago💥🎉🎉1 MONTH CELEBRATION LIVE🎉🎉💥Premium Creator : DAILY LIFE IRL
107 watching -
1:03:11
BonginoReport
3 hours agoTrump-Epstein Wrap-Up Smear Backfires? | Episode 229 – (02/19/26) VINCE
135K94 -
LIVE
GloryJean
1 hour agoReaching #1 Trials This Week
52 watching -
LIVE
The White House
3 hours agoPresident Trump Participates in the Board of Peace Event
1,222 watching -
LIVE
Badlands Media
8 hours agoBadlands Daily: 2/19/26
3,653 watching -
1:04:47
The Mike Schwartz Show
2 hours agoTHE MIKE SCHWARTZ SHOW with DR. MICHAEL J SCHWARTZ 02-19-2026
15.4K2 -
1:09:40
Chad Prather
19 hours agoFrom Slaves to Sons: Breaking the Poverty Spirit and Living in Kingdom Abundance
78.7K27 -
LIVE
Major League Fishing
2 days agoLIVE! - Bass Pro Tour: Stage 2 - Day 1
488 watching