Company
Date Published
Author
Thomas Chauchefoin
Word count
1047
Language
English
Hacker News points
None

Summary

The company, Sonar, attended the Hexacon 2022 event in Paris to share knowledge and learn about the latest security research. The team found talks on various topics such as SAML vulnerabilities, enterprise backup solutions, and iOS device security, which helped them stay updated with the latest research and drive their innovative technology forward. They also presented several vulnerabilities they identified in the Zimbra webmail software, including a simple Stored Cross-Site Scripting vulnerability and a remote code execution bug in Amavis, a component dedicated to post-processing incoming emails. The team believes that presenting the details of these vulnerabilities is crucial to the security industry, as threat actors are still exploiting them despite being patched. Sonar looks forward to attending future events like OffensiveCon and Hexacon 2023.