Kasif Dekel

Tel Aviv District, Israel Contact Info
795 followers 500+ connections

Join to view profile

About

Passionate security researcher & software developer, love to discuss about information…

Experience & Education

  • SentinelOne

View Kasif’s full experience

By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.

Volunteer Experience

  • Information Security

    Hackers For Charity

Publications

Courses

  • Advanced ARM Exploitation Training

    -

  • Advanced C Programming

    -

  • Linux Kernel Advanced

    -

  • Modern Windows Debugging Internals by Alex Ionescu

    -

  • Windows Kernel Internals for Security Researchers

    -

Projects

Honors & Awards

  • StrongDM Account Takeover

    StrongDM

    https://www.strongdm.com/security/advisories/sdmsa-2023001-strongdm-security-advisory

  • Microsoft Most Valuable Researchers

    Microsoft

    Made it to the 2022 Leaderboard https://msrc.microsoft.com/leaderboard and 5th place in 2021 Q3

  • CVE-2021-3437 | HP OMEN Gaming Hub Privilege Escalation Bug Hits Millions of Gaming Devices

    SentinelOne

    Advisory: https://www.sentinelone.com/labs/cve-2021-3437-hp-omen-gaming-hub-privilege-escalation-bug-hits-millions-of-gaming-devices/

  • [CVE-2021-3438] HP / Samsung / Xerox - Hundreds of printer models vulnerable to buffer overflow

    -

    https://support.hp.com/us-en/document/ish_3900395-3833905-16

    CVSS score 8.8

  • CVE-2021-24092 Windows Defender Privilege Escalation

    Microsoft

    https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-24092

  • Won 1st place in CyberArk product & innovation Hackathon

    CyberArk

    My team won the first place in the Hackathon

  • Facebook White Hats

    Facebook

    I found 2 security bugs on fb products:
    https://www.facebook.com/whitehat/thanks/

  • Trend Micro Security Kernel Driver Local Privilege Escalation Vulnerability | CVE-2016-6869

    Trend Micro

    https://www.securityfocus.com/bid/93448

  • Android Vulnerabilities

    -

    i found security vulnerabilities in the android OS:

    1. SQL Injection in the internal SDK of android (SQLiteDB classes): https://github.com/kasif-dekel/Android-SDK-SQLInjection

    2. Will be revealed in the future.

  • 5th Place in Top MSRC 2021 Security Researchers!

    Microsoft

    Link https://msrc-blog.microsoft.com/2021/10/14/congratulations-to-the-top-msrc-2021-q3-security-researchers/

  • CVE-2016-1712 & CVE-2015-8112 - coming soon

    Check Point

  • Microsoft's AppLocker Bypass

    -

    https://github.com/kasif-dekel/Microsoft-Applocker-Bypass

  • PaloAlto - Local privilege escalation (PAN-SA-2016-0012) (CVE-2016-1712)

    Palo Alto Networks

    Summary
    -----------------------------------
    Palo Alto Networks firewalls do not properly sanitize the root_reboot local invocation which can potentially allow executing code with higher privileges (Ref. 92293) (CVE-2016-1712).

    Severity: Medium
    -----------------------------------
    Exploitation of this privilege escalation is restricted to local users. Potential attackers would have to first obtain a shell on the device before they could attempt to escalate privileges through…

    Summary
    -----------------------------------
    Palo Alto Networks firewalls do not properly sanitize the root_reboot local invocation which can potentially allow executing code with higher privileges (Ref. 92293) (CVE-2016-1712).

    Severity: Medium
    -----------------------------------
    Exploitation of this privilege escalation is restricted to local users. Potential attackers would have to first obtain a shell on the device before they could attempt to escalate privileges through this vulnerability.

    Products Affected
    -----------------------------------
    PAN-OS 5.0.18 and earlier, PAN-OS 5.1.11 and earlier, PAN-OS 6.0.13 and earlier, PAN-OS 6.1.11 and earlier, PAN-OS 7.0.7 and earlier

    Available Updates
    -----------------------------------
    PAN-OS 5.0.19 and later, PAN-OS 5.1.12 and later, PAN-OS 6.0.14 and later, PAN-OS 6.1.12 and later, PAN-OS 7.0.8 and later

    Workarounds and Mitigations
    -----------------------------------
    N/A

    Acknowledgements
    -----------------------------------
    Kasif Dekel, CheckPoint Security Team


    http://securityadvisories.paloaltonetworks.com/Home/Detail/45
    Tavis Ormandy's investigation:
    http://securityadvisories.paloaltonetworks.com/Home/Detail/67
    https://bugs.chromium.org/p/project-zero/issues/detail?id=913

Languages

  • Hebrew

    -

  • English

    -

View Kasif’s full profile

  • See who you know in common
  • Get introduced
  • Contact Kasif directly
Join to view full profile

Other similar profiles

Explore collaborative articles

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Explore More

Add new skills with these courses