# vOPCDE #8 [YouTube Replay](https://www.youtube.com/watch?v=aMJ_gR3OaZw) ## CrimeOps: The operational art of cybercrime The Grugq (Strategor) ## Scoop the Windows 10 pool! Corentin Bayet (Synacktiv) & Paul Fariello (Synacktiv) - [Whitepaper](https://www.sstic.org/media/SSTIC2020/SSTIC-actes/pool_overflow_exploitation_since_windows_10_19h1/SSTIC2020-Article-pool_overflow_exploitation_since_windows_10_19h1-bayet_fariello.pdf) - [Github](https://github.com/synacktiv/Windows-kernel-SegmentHeap-Aligned-Chunk-Confusion) - [Slides](https://www.sstic.org/media/SSTIC2020/SSTIC-actes/pool_overflow_exploitation_since_windows_10_19h1/SSTIC2020-Slides-pool_overflow_exploitation_since_windows_10_19h1-bayet_fariello.pdf) ## SMBaloo: From zero to hero - Building the first public RCE Exploit for Windows ARM64 (SMBGhost Edition) Matt Suiche (Comae) - [Blogpost](https://www.comae.com/posts/2020-07-01_smbaloo-building-a-rce-exploit-for-windows-arm64-smbghost-edition/) - [Github](https://github.com/msuiche/smbaloo)