GanaSec

10 posts

GanaSec banner
GanaSec

GanaSec

@ganaseclabs

Ganasec is a specialist offensive security firm | Penetration Testing | Cybersecurity solutions

India Katılım Mayıs 2024
3 Takip Edilen31 Takipçiler
GanaSec
GanaSec@ganaseclabs·
The same bug class Google Project Zero's Ian Beer reported in 2017 as CVE-2017-13847. Apple patched it then. The fix regressed. Nine years later, the ghost came back. Read here : ganasec.com/blog/the-2017-… Patched across iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. #GanaSec
English
0
8
25
5.9K
GanaSec
GanaSec@ganaseclabs·
New blog from GanaSec: The 2017 Ghost in the Time Machine Hunting IOTimeSyncFamily on macOS Our Researcher Ashish Kunwar (@D0rkerDevil) independently discovered CVE-2026-28969 - a use-after-free race condition in Apple's IOTimeSyncFamily kernel extension.
English
4
9
30
4.1K
GanaSec
GanaSec@ganaseclabs·
Default credentials on a forgotten service bypassed it all. Straight through the firewall, into AD. Real movement. Real impact. Pre-IPO. They fixed it fast. IPO went ahead.
English
1
0
1
81
GanaSec
GanaSec@ganaseclabs·
A while back, we were quietly brought in to pentest one of India's top health and nutrition brands. They were preparing for their IPO. Firewall properly configured. AD structured correctly. On paper, audit-ready. But you wont believe the next-
English
1
1
2
620
GanaSec
GanaSec@ganaseclabs·
Proud moment for GanaSec X Apple 🍎 Our researcher @D0rkerDevil responsibly disclosed a security vulnerability in Apple’s IOKit framework, contributing to a safer ecosystem through responsible security research. Acknowledged by Apple Security Team under CVE-2026-28969.
GanaSec tweet mediaGanaSec tweet media
English
0
0
2
1.5K
GanaSec
GanaSec@ganaseclabs·
FYI : A pentest is NOT the same as a vulnerability scan. One finds known issues. The other thinks like an attacker. A pentest is when we try to hack your business on purpose to find the holes before real hackers do. DO YOU AGREE?
English
0
2
2
312
GanaSec
GanaSec@ganaseclabs·
We’ve been quiet, not idle. We’ve been building for the dropouts, the self-taught, the doubted. Cracking how people learn - not just what. Visual, auditory, kinesthetic -we’re designing cybersecurity for real learners. Not just teaching. Unlocking minds. 💡🧠 #cybersecurity
GanaSec tweet media
English
0
3
3
453