Home
Company
Publications
Trainings
Blog
Welcome!
Agarri is small company dedicated to the offensive aspects of information security
Recently published vulnerabilities
[+]
Adobe Reader: Multiple memory corruptions during XSLT processing (
APSB 17-11
)
Firefox: Multiple UAF during XSLT processing (
MFSA 2017-10
)
Revive Adserver: Arbitrary PHP deserialization (
REVIVE-SA-2017-001
)
Adobe Reader: Multiple memory corruptions during XSLT processing (
APSB 17-01
)
Firefox: UAF during XSLT processing (
MFSA 2017-01
)
Upcoming "Burp Suite Pro" trainings
[+]
November 2020
in French on UTC+1 (November 3rd to 6th, 2020)
December 2020
in English on UTC+1 (December 15th to 18th, 2020)
January 2021
in French on UTC-5 (January 26th to 29th, 2021)
February 2021
in English on UTC+8 (February 9th to 12th, 2021)
March 2021
in English on UTC-8 (March 9th to 12th, 2021)
Latest tweets
[+]
Solved with LD_LIBRARY_PATH=/opt/zoom 🤦
Mon Jan 25 19:00:24 2021
Note to myself: do NOT update Zoom unless you have plenty of free time 🤬
Mon Jan 25 18:32:56 2021
One year without skiing 😞 Luckily we still have the videos from
@CandideThovex
â›°â›·
https://t.co/3g2LLh1NAV
Mon Jan 25 17:40:21 2021
RT
@TechBrunchFR
: A deeper dive into the May 2019
@StackOverflow
security incident -
https://t.co/AlzwcqQjJQ
Mon Jan 25 17:32:42 2021
RT
@haroonmeer
: Another day, another vendor hacked. We’ve long argued that this reckoning was coming & that sec companies are under-invest…
Mon Jan 25 15:07:28 2021
Recent talks
[+]
Nearly generic fuzzing of XML-based formats
Nullcon
(March 2017 - Goa - IN -
slides
-
video
)
Server-side browsing considered harmful
Hackfest
(November 2015 - CA -
video (FR)
)
Hack in Paris
(June 2015 - FR)
HackPra Allstars - OWASP AppSec EU
(May 2015 - NL -
slides
-
video
)
Hunting for top bounties
OWASP CZ
(December 2014 - CZ)
ZeroNights
(November 2014 - RU -
slides
)
Hacktivity
(October 2014 - HU -
video
)
Recent blog posts
[+]
A recap of the Q&A session on Twitter
19/06/2020 00h14
Intruder and CSRF-protected form, without macros
13/01/2020 23h51
Back to blogging?
24/01/2019 15h33
Exploiting a Blind XSS using Burp Suite
04/04/2017 22h55
Deserialization in Perl v5.8
06/02/2016 20h30
webmaster@agarri.fr
Copyright 2010-2020 Agarri