# links vulnerability summaries (audio feeds) — RSS Amplifier

Recent posts from the 1 feeds in the RSS Amplifier directory that cover links vulnerability summaries.

Page: <https://rssamplifier.com/topics/link-vulnerability-summary/audio>  
Feed: <https://rssamplifier.com/topics/link-vulnerability-summary/audio.md>

---

## [The Future](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/The-Future-e3hmo4n)

_2026-04-10 · dayzerosec · Day\[0\]_

After 283 episodes, this will be the final episode of the DAY\[0\] podcast. We started the podcast on a hopeful note in the days following Ghidra's release. Now, to end it off we've got another discussion about how we see the future of vulnerability research and exploit development going. We recorded this episode before all the hype around "Mythos" and Project Glasswing so it doesn't play into our…

[Listen](https://anchor.fm/s/a121a24/podcast/play/118234711/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2026-3-10%2F421776681-44100-2-23e24a35f90ee.mp3)

## [Exploiting VS Code with Control Characters](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Exploiting-VS-Code-with-Control-Characters-e32oqon)

_2025-05-12 · dayzerosec · Day\[0\]_

A quick episode this week, which includes attacking VS Code with ASCII control characters, as well as a referrer leak and SCIM hunting. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/282.html \[00:00:00\] Introduction \[00:00:57\] Attacking Hypervisors - Training Update \[00:06:20\] Drag and Pwnd: Leverage ASCII characters to exploit VS Code…

[Listen](https://anchor.fm/s/a121a24/podcast/play/102574295/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-4-13%2F400136161-44100-2-ea8d9e2baa075.mp3)

## [Mitigating Browser Hacking - Interview with John Carse (SquareX Field CISO)](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Mitigating-Browser-Hacking---Interview-with-John-Carse-SquareX-Field-CISO-e31r9fg)

_2025-04-22 · dayzerosec · Day\[0\]_

A special episode this week, featuring an interview with John Carse, Chief Information Security Officer (CISO) of SquareX. John speaks about his background in the security industry, grants insight into attacks on browsers, and talks about the work his team at SquareX is doing to detect and mitigate browser-based attacks.

[Listen](https://anchor.fm/s/a121a24/podcast/play/101606320/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-3-22%2F398800410-44100-2-64d0e392ac9f.mp3)

## [Pulling Gemini Secrets and Windows HVPT](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Pulling-Gemini-Secrets-and-Windows-HVPT-e31jmrc)

_2025-04-16 · dayzerosec · Day\[0\]_

A long episode this week, featuring an attack that can leak secrets from Gemini's Python sandbox, banks abusing private iOS APIs, and Windows new Hypervisor-enforced Paging Translation (HVPT). Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/280.html \[00:00:00\] Introduction \[00:00:18\] Doing the Due Diligence - Analyzing the Next.js Middleware…

[Listen](https://anchor.fm/s/a121a24/podcast/play/101357868/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-3-16%2F398484692-44100-2-1ae4b524f131b.mp3)

## [Session-ception and User Namespaces Strike Again](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Session-ception-and-User-Namespaces-Strike-Again-e30u969)

_2025-04-01 · dayzerosec · Day\[0\]_

API hacking and bypassing Ubuntu's user namespace restrictions feature in this week's episode, as well as a bug in CimFS for Windows and revisiting the infamous NSO group WebP bug. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/279.html \[00:00:00\] Introduction \[00:00:28\] Next.js and the corrupt middleware: the authorizing artifact \[00:06:15\]…

[Listen](https://anchor.fm/s/a121a24/podcast/play/100655753/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-2-31%2F397588486-44100-2-5bdf1c027c4ce.mp3)

## [Extracting YouTube Creator Emails and Spilling Azure Secrets](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Extracting-YouTube-Creator-Emails-and-Spilling-Azure-Secrets-e30j3oa)

_2025-03-24 · dayzerosec · Day\[0\]_

This episode features some game exploitation in Neverwinter Nights, weaknesses in mobile implementation for PassKeys, and a bug that allows disclosure of the email addresses of YouTube creators. We also cover some research on weaknesses in Azure. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/278.html \[00:00:00\] Introduction \[00:00:35\]…

[Listen](https://anchor.fm/s/a121a24/podcast/play/100289738/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-2-24%2F397124283-44100-2-9ab2c936736fe.mp3)

## [ESP32 Backdoor Drama and SAML Auth Bypasses](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/ESP32-Backdoor-Drama-and-SAML-Auth-Bypasses-e30968g)

_2025-03-17 · dayzerosec · Day\[0\]_

Discussion this week starts with the ESP32 "backdoor" drama that circled the media, with some XML-based vulnerabilities in the mix. Finally, we cap off with a post on reviving modprobe\_path for Linux exploitation, and some discussion around an attack chain against China that was attributed to the NSA. Links and vulnerability summaries for this episode are available at:…

[Listen](https://anchor.fm/s/a121a24/podcast/play/99964624/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-2-17%2F396710103-44100-2-02db07549a886.mp3)

## [Exploiting Xbox 360 Hypervisor and Microcode Hacking](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Exploiting-Xbox-360-Hypervisor-and-Microcode-Hacking-e30236f)

_2025-03-12 · dayzerosec · Day\[0\]_

A very technical episode this week, featuring some posts on hacking the xbox 360 hypervisor as well as AMD microcode hacking. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/276.html \[00:00:00\] Introduction \[00:00:15\] Reversing Samsung's H-Arx Hypervisor Framework - Part 1 \[00:10:34\] Hacking the Xbox 360 Hypervisor Part 1: System Overview…

[Listen](https://anchor.fm/s/a121a24/podcast/play/99732111/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-2-12%2F396419166-44100-2-33ac246298fb6.mp3)

## [Path Confusion and Mixing Public/Private Keys](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/Path-Confusion-and-Mixing-PublicPrivate-Keys-e2vkbde)

_2025-03-03 · dayzerosec · Day\[0\]_

This week's episode features a variety of vulnerabilities, including a warning on mixing up public and private keys in OpenID Connect deployments, as well as path confusion with an nginx+apache setup. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/275.html \[00:00:00\] Introduction \[00:19:00\] The OOB Read zi Introduced \[00:16:55\] Mixing up Public…

[Listen](https://anchor.fm/s/a121a24/podcast/play/99281774/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-2-3%2F395853166-44100-2-f2e13206058cd.mp3)

## [Transcript-Driven Stock Discovery (Sponsored)](https://crawlproof.com/a/hYcNk0AXtXrp)

_2025-03-03 · **Sponsored**_

Ranked, evidence-backed watchlists from indexed executive transcripts for 1–2 quarter horizons

## [ZDI's Triaging Troubles and LibreOffice Exploits](https://podcasters.spotify.com/pod/show/dayzerosec/episodes/ZDIs-Triaging-Troubles-and-LibreOffice-Exploits-e2vbfe5)

_2025-02-25 · dayzerosec · Day\[0\]_

We discuss an 0day that was dropped on Parallels after 7 months of no fix from the vendor, as well as ZDI's troubles with responses to researchers and reproducing bugs. Also included are a bunch of filesystem issues, and an insanely technical linux kernel exploit chain. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/274.html \[00:00:00\]…

[Listen](https://anchor.fm/s/a121a24/podcast/play/98990981/https%3A%2F%2Fd3ctxlq1ktw2nl.cloudfront.net%2Fstaging%2F2025-1-25%2F395493214-44100-2-e36dddb0a7a4b.mp3)

