Qinrun Dai

23 posts

Qinrun Dai

Qinrun Dai

@2st___

CTF Player @ L3H_Sec / OIer / System Security / Exploitation / CS PhD Student

Katılım Haziran 2020
128 Takip Edilen215 Takipçiler
Mmm
Mmm@hackyzh·
@2st___ chrome?
English
1
0
1
878
Qinrun Dai
Qinrun Dai@2st___·
Another RCE is born. Finding a useful infoleak is 10x harder than the OOB write. Hoping to catch this year's BlackHat :)
Qinrun Dai tweet media
English
3
11
118
8.1K
Qinrun Dai
Qinrun Dai@2st___·
Has been playing Earth Online for 24 years, looking forward to more stickers on my laptop.
Qinrun Dai tweet mediaQinrun Dai tweet media
English
0
0
2
544
zcysky
zcysky@zcyskyqaqqwq·
Finally, my first year's work got officially accpeted on POPL 2025. This may be the only good news to me these days. Hope I can move on to produce more interesting work in the future.
English
4
0
16
1K
Qinrun Dai
Qinrun Dai@2st___·
I’m honored to be here at #BHUSA 2024 to deliver my talks about 1 click RCE on smart phones and machine learning into kernel on-the-fly quarantine!
Qinrun Dai tweet mediaQinrun Dai tweet mediaQinrun Dai tweet media
English
1
2
21
1.2K
Qinrun Dai
Qinrun Dai@2st___·
What's the feeling of rewriting code based on 4-years-ago toolchain version and 10-years-ago historical projects?
Qinrun Dai tweet media
English
0
0
4
653
Qinrun Dai retweetledi
Theori
Theori@theori_io·
Do you use a virtual machine to browse dangerous links safely? If you use the Chrome browser inside that virtual machine, is it secure enough? As you might have guessed, the answer is not so much. We chained six unique CVEs from 2023 listed below. • Chrome Renderer RCE : CVE-2023-3079 • Chrome Sandbox Escape : CVE-2023-21674 • LPE in guest OS : CVE-2023-29360 • VMware Info Leak : CVE-2023-34044 • VMware Escape : CVE-2023-20869 • LPE in host OS : CVE-2023-36802
English
25
260
929
138.8K
Qinrun Dai
Qinrun Dai@2st___·
Recently it occurred to me the fact that when I lose my status as a student, I will no longer be a "maybe-good" CTF player or a security researcher. I will still need to fill my knowledge with 7x10 hours of study and enthusiasm like I did during my sophomore year.
English
1
0
2
277
Qinrun Dai
Qinrun Dai@2st___·
openai provides me with good example code snippets to learn
English
0
0
0
265
Qinrun Dai
Qinrun Dai@2st___·
At first I was used to read LLVM source code a lot to find what methods, class...that I should use . Now with openai and copilot, I can focus on the algorithm design, instead of "wasting" time to read the source. AI is indeed a good helper to quickly learn prior knowledge.
English
1
0
2
511
Qinrun Dai retweetledi
inversecos
inversecos@inversecos·
How to Reverse and Exploit iOS for BEGINNERS😈 👇My 3 part series👇 Part 1: How to Reverse & Patch iOS Apps bit.ly/3inJgop Part 2: Exploiting iOS binaries: ARM64 ROP Chains bit.ly/3BgvLxt Part 3: Heap Overflows on ARM64: Spraying, UAF bit.ly/3gGI7rx
inversecos tweet mediainversecos tweet media
English
31
500
1.8K
0
Qinrun Dai
Qinrun Dai@2st___·
Finally, my TOEFL score is out !!! No longer tormented by exam cancellations and worrying about hold status !!!
English
0
0
5
0
Qinrun Dai
Qinrun Dai@2st___·
Although some public researches on Windows Defender are very enlightening, there is still little information on mpengine's internal on the Internet. Hope to find some people to research together.
English
0
1
3
0
Qinrun Dai
Qinrun Dai@2st___·
Windows pwn is always kind of complex :)
Qinrun Dai tweet mediaQinrun Dai tweet media
English
0
0
7
0
Qinrun Dai
Qinrun Dai@2st___·
won second place in DEFCON30 with Katzebin made some small contributions Looking forward to DEFCON31!
Qinrun Dai tweet mediaQinrun Dai tweet media
English
0
0
1
0