kimh

6 posts

kimh

kimh

@desckimh

Hi, I’m kimh

Republic of Korea Katılım Ağustos 2024
27 Takip Edilen453 Takipçiler
kimh
kimh@desckimh·
Found an RCE trust_remote_code=False bypass in huggingface Transformers. $750+ bounty
English
5
10
168
12.5K
kimh
kimh@desckimh·
@D0ct3rStr Found some 0-day RCEs in Ollama and LM Studio and submitted my entries for Pwn2Own. Both are still unpatched, so I’m gutted I won’t be making it this time 😢 I’ll be posting the full analysis once the fixes are out :)
English
2
0
18
2.8K
An Pham
An Pham@D0ct3rStr·
@desckimh that's great, I couldnt find a way to rce ollama. Hope I can read your analysis soon
English
1
0
5
2.9K
kimh
kimh@desckimh·
Missed out on Pwn2Own2026 Berlin because it was way too crowded this time. 🥲 Well, here’s the Ollama RCE that I was going to bring. Still unpatched and working (v0.22.1 in the video, but still working)
English
5
53
470
50.7K
RyotaK
RyotaK@ryotkak·
Does anyone have a direct contact at @thezdi? I've been trying to register my Pwn2Own entries for the past 3 weeks but still haven't received a clear response. I'll have to cancel my flight and hotel by May 10th if my entries aren't confirmed.
English
8
6
114
29.7K
kimh
kimh@desckimh·
@thezdi I still haven't received a reply to the registration email I sent 3 days ago. I guess the @thezdi is very busy😢. Could you check my email? I have to book a flight, but I don’t have time⏳
English
1
0
0
268
TrendAI Zero Day Initiative
We're less than 24 hours from the close of registration for #Pwn2Own Berlin! Get your submissions in while you still can.
English
5
7
54
16.5K
kimh
kimh@desckimh·
My first two CVEs(CVE-2025-66959, CVE-2025-66960) discovered in Ollama have been published. Just audit my eyes👀
kimh tweet mediakimh tweet media
English
0
3
63
4.8K