<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Forensics on Quentin Rousseau</title><link>http://blog.quent.in/tags/forensics/</link><description>Recent content in Forensics on Quentin Rousseau</description><generator>Hugo</generator><language>en-US</language><lastBuildDate>Fri, 31 Jul 2026 12:00:00 +0000</lastBuildDate><atom:link href="http://blog.quent.in/tags/forensics/index.xml" rel="self" type="application/rss+xml"/><item><title>Zero-Day to Zero Doubt: AI-Powered CVE Forensics in an Afternoon</title><link>http://blog.quent.in/blog/2026/07/31/zero-day-to-zero-doubt-ai-powered-cve-forensics-in-an-afternoon/</link><pubDate>Fri, 31 Jul 2026 12:00:00 +0000</pubDate><guid>http://blog.quent.in/blog/2026/07/31/zero-day-to-zero-doubt-ai-powered-cve-forensics-in-an-afternoon/</guid><description>&lt;p&gt;On July 29, the Rails team &lt;a href="https://rubyonrails.org/2026/7/29/Rails-Versions-7-2-3-2-8-0-5-1-and-8-1-3-1-have-been-released"target="_blank"
 class="inline-flex items-center gap-1"
&gt;released security patches&lt;svg class="h-3 w-3 flex-shrink-0" id="external-link" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"&gt;&lt;path fill="none" stroke="currentColor" stroke-linecap="round" stroke-linejoin="round" stroke-width="2" d="M15 3h6v6m-11 5L21 3m-3 10v6a2 2 0 0 1-2 2H5a2 2 0 0 1-2-2V8a2 2 0 0 1 2-2h6"/&gt;&lt;/svg&gt;
&lt;/a&gt; for &lt;a href="https://discuss.rubyonrails.org/t/cve-2026-66066-possible-arbitrary-file-read-and-remote-code-execution-in-active-storage-variant-processing/91432"target="_blank"
 class="inline-flex items-center gap-1"
&gt;CVE-2026-66066&lt;svg class="h-3 w-3 flex-shrink-0" id="external-link" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"&gt;&lt;path fill="none" stroke="currentColor" stroke-linecap="round" stroke-linejoin="round" stroke-width="2" d="M15 3h6v6m-11 5L21 3m-3 10v6a2 2 0 0 1-2 2H5a2 2 0 0 1-2-2V8a2 2 0 0 1 2-2h6"/&gt;&lt;/svg&gt;
&lt;/a&gt; — an arbitrary file read (and potential RCE) through Active Storage, internally dubbed &lt;strong&gt;KindaRails2Shell&lt;/strong&gt;. Found independently by researchers at &lt;a href="https://ethiack.com/"target="_blank"
 class="inline-flex items-center gap-1"
&gt;Ethiack&lt;svg class="h-3 w-3 flex-shrink-0" id="external-link" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"&gt;&lt;path fill="none" stroke="currentColor" stroke-linecap="round" stroke-linejoin="round" stroke-width="2" d="M15 3h6v6m-11 5L21 3m-3 10v6a2 2 0 0 1-2 2H5a2 2 0 0 1-2-2V8a2 2 0 0 1 2-2h6"/&gt;&lt;/svg&gt;
&lt;/a&gt; (0xacb, s3np41k1r1t0, castilho) and &lt;a href="https://flatt.tech/"target="_blank"
 class="inline-flex items-center gap-1"
&gt;GMO Flatt Security&lt;svg class="h-3 w-3 flex-shrink-0" id="external-link" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"&gt;&lt;path fill="none" stroke="currentColor" stroke-linecap="round" stroke-linejoin="round" stroke-width="2" d="M15 3h6v6m-11 5L21 3m-3 10v6a2 2 0 0 1-2 2H5a2 2 0 0 1-2-2V8a2 2 0 0 1 2-2h6"/&gt;&lt;/svg&gt;
&lt;/a&gt; (RyotaK), it&amp;rsquo;s the kind of vulnerability that makes you pause.&lt;/p&gt;</description></item></channel></rss>