TGViewer
Proxy Bar Proxy Bar @proxy_bar · 21.5K subscribers
Post #3551 5.88K
Two Bytes to RCE: Chaining Rift + PoolSlip into an ASLR-Independent nginx 1.30.0 Exploit

Original text: “Two Bytes to RCE: Chaining Rift + PoolSlip” — y198, Verichains (Jun 06, 2026). Code, tables and figures below are reproduced verbatim with attribution captions. PoC: github.com/y198nt/Nginx-chain-Rift-Poolslip.

Executive Summary

A two-bug chain in nginx 1.30.0 achieves unauthenticated remote code execution without relying on ASLR breaks. The first bug, CVE-2026-42945 (“Rift”), is a forward…

https://core-jmp.org/2026/07/nginx-rce-rift-poolslip-aslr-independent/
  • 🔥 12
More from @proxy_bar
  1. Sep 24, 2026Вспомнилось ! Был такой хороший гайд Introduction to Exploit Development Сегодня он интере…
  2. Sep 23, 2026Linux container escape * PoC
  3. Sep 21, 2026Идея для "быстрых свиданий" Ну это те, которые 5 минут общаешься, потом пересаживаетесь. З…
  4. Sep 20, 2026А скиньте фотки с тусы а )))
  5. Sep 20, 2026ZeroNights 2026 подъехали ПРОМОКОДЫ * Действовать начинает с 20 сентября и по 24 сентября…
  6. Sep 19, 2026LPE quartet of Linux local root * DirtyAH6 CVE-2026-80844 POC TUNderflow CVE-2026-81000 PO…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →