AmberWolf Research
  • Home
  • Blog
  • Disclosure Policy
  • Main Site
to navigate to select ESC to close
  • David Cash David Cash
  • Richard Warren Richard Warren
  • 27 Feb, 2026
    • Vulnerability
    • Disclosure
    • Delinea

Delinea Protocol Handler - Return of the MSI: RCE via Custom Launcher

Summary Ok, so there’s no MSI this time but our last Delinea post was titled ‘MSI Strikes Back’ so we thought we’d stay on …

Read Article
  • David Cash David Cash
  • Richard Warren Richard Warren
  • 21 Jan, 2026
    • Vulnerability
    • Disclosure

Advisory - Check Point Harmony Local Privilege Escalation (CVE-2025-9142)

Check Point Harmony Local Privilege Escalation (CVE-2025-9142)

Read Article
  • Iain Smart Iain Smart
  • 01 Sep, 2025
    • Kubernetes

Breaking Boundaries - Kubernetes Namespaces and multi-tenancy

Footguns and privilege escalations making multi-tenancy difficult in Kubernetes clusters.

Read Article
  • Richard Warren Richard Warren
  • David Cash David Cash
  • 29 Aug, 2025
    • Vulnerability
    • ZTNA
    • DEFCON
    • Netskope

Advisory - Netskope Client for Windows - Local Privilege Escalation via Rogue Server (CVE-2025-0309)

Always Trust, Never Verify - except when you have to trust the server isn’t malicious .. and install this CA certificate and MSI while …

Read Article
  • David Cash David Cash
  • 20 Aug, 2025
    • PAM
    • Vulnerability
    • Disclosure
    • Delinea

Delinea Protocol Handler - MSI Strikes Back

Introduction Delinea’s custom URL handler allows the software’s update process to be triggered, downloading and running an MSI from an …

Read Article
  • Richard Warren Richard Warren
  • David Cash David Cash
  • 15 Aug, 2025
    • Vulnerability
    • ZTNA
    • DEFCON
    • Netskope

Advisory - Netskope Cross-tenant Authentication Bypass

Advisory - Netskope Cross-tenant Authentication Bypass

Read Article
  • 1
  • 2
  • 3
  • 4
  • 5
  • Main Site
  • Privacy

Copyright AmberWolf 2024