DongHa Lee

40 posts

DongHa Lee

DongHa Lee

@gap_dev

Vulnerability Researcher in KR 👋 /  / [email protected]

Seoul, Republic of Korea Katılım Temmuz 2025
114 Takip Edilen410 Takipçiler
DongHa Lee
DongHa Lee@gap_dev·
Wrapped up BOB14 grabbed some bounty on the way. Not bad at all.
DongHa Lee tweet mediaDongHa Lee tweet mediaDongHa Lee tweet media
English
2
6
70
3.7K
DongHa Lee
DongHa Lee@gap_dev·
🍎CVE-2026-28868 XNU :)
DongHa Lee tweet media
0
7
70
4.1K
DongHa Lee
DongHa Lee@gap_dev·
🍎CVE-2026-20695 XNU bug! [ZDI-CAN-28499]
DongHa Lee tweet media
0
4
36
2.4K
Hyungyu Seo
Hyungyu Seo@wh1te4ever·
I have posted a write-up for those who are interested in building virtual iPhone. If have any further questions, please feel free to reach out via DM, Thanks. github.com/wh1te4ever/sup…
English
24
108
504
71.2K
DongHa Lee retweetledi
Hyungyu Seo
Hyungyu Seo@wh1te4ever·
Some demo about running Virtual iPhone using Apple Virtualization framework: youtu.be/3vvrU0YGKCQ
YouTube video
YouTube
Hyungyu Seo tweet media
English
6
37
270
24.9K
DongHa Lee
DongHa Lee@gap_dev·
@MrKaLi176442 Varies case by case. Probably tied to the quarter cycle, so from my experience it can take up to ~6 months. I don’t know exactly though.😭
English
0
0
1
75
Mr_KaLi🇧🇩
Mr_KaLi🇧🇩@MrKaLi176442·
@gap_dev I reported a bug status was adressed but not received any bounty message. How much time need for bounty message after adressed?
English
1
0
1
85
DongHa Lee
DongHa Lee@gap_dev·
Received $1,000 from Apple’s bug bounty program! Old report, but a nice surprise🎁
DongHa Lee tweet media
English
2
0
72
2.9K
DongHa Lee
DongHa Lee@gap_dev·
@MrKaLi176442 I reported this bug in June, received a CVE in October, and the bounty has now been addressed.
English
1
0
2
164
DongHa Lee retweetledi
SinSinology
SinSinology@SinSinology·
🤌🔥 "Build a Fake Phone, Find Real Bugs Qualcomm GPU Emulation and Fuzzing with LibAFL QEMU" media.ccc.de/v/39c3-build-a…
English
1
55
292
26.3K
DongHa Lee retweetledi
Ivan Fioravanti ᯅ
Ivan Fioravanti ᯅ@ivanfioravanti·
On Apple Silicon, the GPU by default cannot use more than about 75% of the system's total memory, but you can change this setting easily. I use my own script for that and set it up to 98% on M3 Ultra 512GB. gist.github.com/ivanfioravanti…
English
14
45
447
39.4K
DongHa Lee
DongHa Lee@gap_dev·
I’m not affiliated with Talos. I’m an independent security researcher, so I don’t really know the details of the other bug. For my bug, I found it quite a while ago, and it looks like the credit process got missed after I reported it (it’s being sorted out now lol). As for exploitation: at least when I analyzed it back then, I didn’t see a viable way to get a shell. Even though it’s a stack overflow, I couldn’t find a memory layout that I could realistically overwrite in a useful way.
DongHa Lee tweet media
English
1
0
2
679
f00fc7c800
f00fc7c800@f00fc7c800·
@gap_dev does the new binary also ship withouth pie ? since stack overflow u could technically redirect to the vuln section where u put ropchain there right to get shell ?
English
1
0
0
295
DongHa Lee
DongHa Lee@gap_dev·
CVE-2025-23339 My first NVIDIA CVE🎉 (found via grammar-based fuzzing)
DongHa Lee tweet media
English
9
14
269
13.2K
DongHa Lee
DongHa Lee@gap_dev·
@f00fc7c800 Yep, it’s a stack overflow, but no shell😅 Not entirely sure where the line is drawn for calling this code execution
English
1
0
4
1.5K
f00fc7c800
f00fc7c800@f00fc7c800·
@gap_dev yo is it really a stack overflow ? that s nice did u manage to leverage it to shell ? i worked on something else on cuobjdump and didnt manage to get shell :/
English
1
0
4
1.6K
DongHa Lee
DongHa Lee@gap_dev·
CVE-2025-10500 (+15000 usd) When will they update my credit?😂
DongHa Lee tweet media
English
6
3
215
17K
집돌이
집돌이@_silgen_name·
iOS 19 AppleInternal은 Virtualization.framework가 있네
English
1
0
4
929