Courses from 1000+ universities
India banned Telegram after the NEET paper leak led to a retest for 2.28 million students. Class Central studied the scam, the money trail, and other platforms the leaks could move to.
600 Free Google Certifications
Language Learning
IT & Networking
AI Engineering
Dino 101: Dinosaur Paleobiology
Viruses & How to Beat Them: Cells, Immunity, Vaccines
Inglés empresarial: ventas, gestión y liderazgo
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Discover how to exploit CVE-2024-38077, a critical preauth RCE vulnerability affecting Windows Server 2003-2025, bypassing modern security mitigations for 0-click remote code execution.
Uncover Qualcomm's QDSP6 JTAG mysteries through advanced theoretical reverse engineering techniques using patent analysis, firmware reverse engineering, and theoretical modeling.
Explore the DeeDoS attack against the Matter protocol, a new vulnerability that allows attackers outside a fabric to disable IoT devices, expanding security concerns in the growing connected device ecosystem.
Discover a critical vulnerability allowing malicious hosts to execute undetected code in confidential VMs through ACPI Machine Language injection, compromising guest data security in cloud environments.
Uncover the Blast-RADIUS vulnerability that allows man-in-the-middle attacks on RADIUS authentication protocol, affecting network routers, VPNs, enterprise Wi-Fi, and more.
Explore how third-party Android apps can exploit ClassLoader mechanisms to create malicious Java objects, potentially compromising security without requiring permissions, with practical examples and mitigation strategies.
Dive into the security analysis of Windows Network Load Balancing, exploring vulnerabilities in the Heartbeat feature including integer overflows, race conditions, and memory issues that can lead to remote code execution or DoS attacks.
Dive into an analysis of 4 years of threat intelligence data revealing how threat actors target SAP applications, vulnerability trends, and why ERP security deserves more attention from security professionals.
Dive into four disk-related vulnerabilities in Apple systems, exploring diskarbitrationd, diskutil, storagekitd, and Disk Utility to understand sandbox escapes, TCC bypasses, and privilege escalation techniques.
Explore a novel attack surface in Java security: JAAS (Java Authentication and Authorization Service). Learn how improper implementation can lead to RCE vulnerabilities affecting major vendors and how to securely integrate JAAS into Java libraries.
Uncover the operations of UNC1860, an Iranian state-sponsored threat actor targeting Middle Eastern networks, including their sophisticated kernel-mode drivers, custom implants, and role as an access broker for Iranian government operations.
Explore the landscape of state-sponsored mobile surveillance malware through case studies from Russia, China, and North Korea, examining targeting methods and previously unreported malware families.
Explore PromptWare attacks that can manipulate GenAI agents from serving applications to attacking them, including DoS exploits and Advanced Promptware Threats that conduct reconnaissance and execute malicious activities.
Explore vulnerabilities in the eSIM download protocol, including security weaknesses in TLS encapsulation, trust model issues, and potential SIM swapping risks, with practical mitigation strategies.
Dive into the discovery of critical vulnerabilities in DrayTek networking devices, including remote code execution and emulator escape techniques, and learn how researchers identified and helped patch these issues before threat actors could exploit them.
Get personalized course recommendations, track subjects and courses with reminders, and more.