Divyanshu

425 posts

Divyanshu

Divyanshu

@_seg_fault__

Vulnerability Research ❤️

192.168.0.1 Katılım Aralık 2018
884 Takip Edilen890 Takipçiler
Divyanshu retweetledi
Computer Science
Computer Science@CompSciFact·
The C code below compiles and prints "hello, world".
Computer Science tweet media
English
105
285
2.3K
700.4K
Divyanshu retweetledi
The Nobel Prize
The Nobel Prize@NobelPrize·
BREAKING NEWS The Royal Swedish Academy of Sciences has decided to award the 2025 #NobelPrize in Physics to John Clarke, Michel H. Devoret and John M. Martinis “for the discovery of macroscopic quantum mechanical tunnelling and energy quantisation in an electric circuit.”
The Nobel Prize tweet media
English
403
7.5K
18K
4.8M
Divyanshu
Divyanshu@_seg_fault__·
@xvonfers Good luck ! 🙌 The *INT also seems interesting. Maybe keep posting some about those in future as well. I would love to read it
English
0
0
1
421
xvonfers
xvonfers@xvonfers·
Dear readers, I wanted to say that I am slowly leaving vr/xd for SIGINT/COMINT/ELINT/UAV
English
15
2
74
10.6K
Divyanshu retweetledi
xvonfers
xvonfers@xvonfers·
Whoah... $250000 (CVE-2025-4609, similar to CVE-2025-2783/412578726)[412578726][Mojo][IpczDriver]ipcz bug -> renderer duplicate browser process handle -> escape sbx is now open with PoC & exploit(success rate is nearly 70%-80%) issues.chromium.org/issues/4125787… #comment11" target="_blank" rel="nofollow noopener">issues.chromium.org/issues/4125787…
xvonfers tweet media
xvonfers@xvonfers

(CVE-2025-4609)[412578726][Mojo][IpczDriver]Incorrect handle provided in unspecified circumstances chromium-review.googlesource.com/c/chromium/src… Reported by Micky on 2025-04-22

English
2
56
237
75.8K
Divyanshu
Divyanshu@_seg_fault__·
@xvonfers Is there a way to identify all such public Google docs rather than encountering them by chance?
English
2
0
0
103
Divyanshu retweetledi
DARKNAVY
DARKNAVY@DarkNavyOrg·
Leak hole PoC for Chrome in-the-wild vulnerability CVE-2025-6554 published yesterday: github.com/DarkNavySecuri…
DARKNAVY tweet mediaDARKNAVY tweet media
English
5
54
181
32.5K
Divyanshu retweetledi
starlabs
starlabs@starlabs_sg·
When life gives you tangerines🍊 Intern Lin Ze Wei's task: Port a 2-bug exploit to Pixel 6 Pro Problem: One bug "doesn't work" Solution: Make it work with 1 bug Sometimes the best research comes from working with what you think you have starlabs.sg/blog/2025/06-s…
English
0
38
142
15.2K
Divyanshu
Divyanshu@_seg_fault__·
Personal Update: Moved to Spain for Vulnerability Research. Hopefully better bugs and more beautiful exploits this year :)🤞🤞
English
0
1
176
11K
Divyanshu
Divyanshu@_seg_fault__·
@TinySecEx Hmm interesting. I didn't find any xref to that api in dwmcore. Maybe some other dll. Thanks for this anyways!
English
1
0
2
229
TinySec
TinySec@TinySecEx·
@gh0st_R1d3r_0x9 I'm thik there's no need to be able to execute code in dwm, just that some dwm composition request can control the parameters of NtDCompositionDuplicateHandleToProcess, that's enough.
English
1
0
0
233
Divyanshu
Divyanshu@_seg_fault__·
@TinySecEx I get that but the function NtDCompositionDuplicateHandleToProcess has a check around if the process calling it is dwm or not. If not it bails out and the arbitrary kernel write won't work. So the attack surface for this bug is when we already have code execution in dwm right?
English
1
0
0
231
TinySec
TinySec@TinySecEx·
@gh0st_R1d3r_0x9 dwm is very special, it is responsible for window composite. Many functions of dwmcore are forwarded to the dwm process.
English
1
0
0
427
Divyanshu
Divyanshu@_seg_fault__·
@udunadan But having a relaxed mindset while hunting is very difficult unless I'm rich and have a do not care attitude about me finding bugs. How do you develop this attitude?
English
1
0
1
876
dunadan
dunadan@udunadan·
When your livelihood depends on your research effort being of world quality, it is natural to get anxious about it, to get tense, demand the best from yourself. But like with many other things, the best effort sometimes comes out of relaxed, almost playful state and composure.
English
1
3
16
2.6K
Divyanshu
Divyanshu@_seg_fault__·
@f00fc7c800 I don't think windows or any OS for that matter was an eligible target for this yrs pwn2own
English
0
0
0
104
f00fc7c800
f00fc7c800@f00fc7c800·
So am nobody hacks windows this year at pwn2own ?
English
1
0
2
516