gsch

24 posts

gsch banner
gsch

gsch

@__gsch

iOS VR @prdgmshift

Katılım Temmuz 2018
326 Takip Edilen340 Takipçiler
john
john@nyan_satan·
SundanceInH2A rev3 adds patch parameterization, iOS 6.1.x support (6.1.3 & 6.1.6 as of now) and fixes lock screen overlay in wallpaper settings github.com/NyanSatan/Sund…
English
2
12
55
8.6K
gsch retweetledi
freemyipod
freemyipod@freemyipod·
Click-click! A very basic GPIO support for iPod nano 7th generation running Linux 6.14
English
2
2
7
341
gsch retweetledi
Paradigm Shift
Paradigm Shift@prdgmshift·
Oh, one more thing… our new website is live! 🌐 ps.tc Still lots in the works - from our research blog to other initiatives - but here’s a nice sneak peek for now 👀
English
1
5
28
4.4K
gsch
gsch@__gsch·
@b_nnett @Xernium It was but unfortunately there's no recording. Whenever I get to documenting all this stuff I'll post an update here :)
English
0
0
1
77
Bennett
Bennett@b_nnett·
@__gsch @Xernium was this for a conference? I love putting talks on in the background while I work. thank you – looking forward to reading through it :)
Bennett tweet media
English
1
0
0
94
gsch
gsch@__gsch·
And the penguin has finally emerged from the black void🐧
gsch tweet media
English
29
176
2.2K
67.4K
gsch retweetledi
Hexacon
Hexacon@hexacon_fr·
Another newcomer is sponsoring us this year: @prdgmshift! @prdgmshift is an independent European EU leader in cybersecurity research. With a team of world-class researchers, we uncover critical zero-days and deliver state-of-the-art research to keep our partners one step ahead.
Hexacon tweet media
English
1
7
21
8.3K
gsch retweetledi
john
john@nyan_satan·
Amazing as always! Thanks to the organizers and attendees! I had honor to present my & @__gsch’s & q3k’s talk titled “1,000 bugs in your pocket” We’ll likely publish the slides soon
0x41con@0x41con

0x41con 2025 is over!

English
2
4
40
18.1K
Jevi
Jevi@re_jevi·
@__gsch Makes me want to go back to iOS exploitation, what vuln are you using?
English
1
0
0
412
gsch
gsch@__gsch·
Still WIP but to answer some people's question: yes, it can :)
English
3
7
54
3.1K
gsch
gsch@__gsch·
@b_nnett Not for now. The bootrom exploit (S5Late) is tethered, and there's no driver for its NAND yet. I'm running from an NFS. In the future when proper driver support is in place it could be made untethered by using the ipod_sun exploit. Cool to hear it's gaining some interest :)
English
0
0
3
153
gsch
gsch@__gsch·
@Xernium Maybe next month but no promises :)
English
1
0
9
1.9K
Xernium
Xernium@Xernium·
@__gsch Can't wait for that blogpost or write-up
English
1
0
16
2.6K
gsch
gsch@__gsch·
Getting some earlyprintk going for the iPod Nano7 after I managed to get USB working on U-Boot. Also figured enough of the LCD controller to draw on the screen. This is all thanks to previous work by q3k :)
gsch tweet mediagsch tweet mediagsch tweet media
English
0
0
18
1.1K
gsch
gsch@__gsch·
Turns out you could access DiagShell in iPod Nano7 without any exploit by just sending the diag image after WTF. And memrw works so you can read/write anywhere 🙃
gsch tweet mediagsch tweet media
English
2
6
61
8.8K
gsch
gsch@__gsch·
After working together with q3k, wInd3x now supports iPod Nano 7G by using S5Late. That makes decrypting and running custom binaries very straightforward. github.com/freemyipod/wIn…
English
0
1
17
2.1K
gsch retweetledi
john
john@nyan_satan·
iPod shuffle 4 (S5L8443) is now also O B L I T E R A T E D by virtue of @__gsch's S5Late bug (Yes, the ROM is so similar to S5L8723, that they didn't even bother changing serial number string)
john tweet media
English
3
2
45
6.2K
gsch retweetledi
john
john@nyan_satan·
Here is my preliminary iPod nano 6 (S5L8723) port of the new bootrom exploit by @__gsch - S5Late As usual, be careful with this and etc. github.com/NyanSatan/S5La…
English
3
11
56
7.3K
guyru
guyru@guyru_·
@__gsch Nice bootrom bug. If you're interested in security research on Apple targets, we might have interesting opportunities for you in my team at @CellebriteLabs. Let me know if you want to hear more.
English
1
0
3
766