Ivan Fratric 💙💛

1.3K posts

Ivan Fratric 💙💛

Ivan Fratric 💙💛

@ifsecure

Tech lead and security researcher at Google Project Zero. Author: Jackalope, TinyInst, WinAFL, Domato. PhD. Tweets are my own. Backup @[email protected]

Katılım Ağustos 2011
210 Takip Edilen18.9K Takipçiler
Sabitlenmiş Tweet
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
The slides for my Black Hat talk "XMPP Stanza Smuggling or How I Hacked Zoom" are now available at #xmpp-stanza-smuggling-or-how-i-hacked-zoom-26618" target="_blank" rel="nofollow noopener">blackhat.com/us-22/briefing…
English
4
67
278
0
Halvar Flake
Halvar Flake@halvarflake·
The experience of being told by Fable over and over again that "all your thoughts trigger downgrade" is not great. Is there a way to just zap everything that Anthropic knows about me and start from scratch?
English
16
3
54
8.4K
Ivan Fratric 💙💛 retweetledi
Seth Jenkins
Seth Jenkins@__sethJenkins·
My and @natashenka 's talk from OffensiveCon is now available on YouTube! Watch for a tour of a zero-click to root exploit chain across multiple generations of Google Pixel! youtube.com/watch?v=jpB_b6…
YouTube video
YouTube
English
1
24
80
10.8K
Ivan Fratric 💙💛 retweetledi
offensivecon
offensivecon@offensive_con·
Offensivecon's talks are now available on our YouTube channel! 🔗 buff.ly/g63xgm5
offensivecon tweet media
English
1
100
342
25.7K
Moritz Sanft
Moritz Sanft@stdoutput·
@ifsecure Any chance you could share the slides? Thanks for the great talk!
English
1
0
1
163
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
In my OffensiveCon talk on Site Isolation yesterday, a question was asked that I didn't quite get at the moment so my answer was probably irrelevant. My apologies, especially since the question, as I understand it now, totally makes sense. Answering it here:
English
3
3
60
15.3K
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
I imagine the question was asked in reference to my 2nd demo, which admittedly wasn't very good in the sense that it showed a (partial) redirect url leak, but the url in that demo wasn't user specific.
English
0
1
3
2.2K
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
For that to happen, the request needs to be made with the user's (victim's) cookies. This is also the reason why disabling 3rd party cookies mitigates the attack.
English
1
1
7
3.3K
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
CVE-2026-28920 (Apple, zlib, found by Brendon Tiszka of Google Project Zero) sure looks fun :)
English
1
12
97
12.3K
Ivan Fratric 💙💛 retweetledi
Seth Jenkins
Seth Jenkins@__sethJenkins·
Just derestricted a now-fixed kernel bug in Pixel 10. I think this ranks as the most easily exploited kernel bug of all time😬 Thanks to @tehjh for collab'ing on this driver and full credits for noticing this bug in the first 5 minutes of auditing😂 project-zero.issues.chromium.org/issues/4634382…
English
5
45
187
17.5K
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
@cl4sm Yes, exactly, coverage is poor aproximation for state. I don't think better state approximation and mutational fuzzing are mutually exclusive, mutational fuzzer benefits from better state.
English
0
0
1
159
Wil Gibbs
Wil Gibbs@cl4sm·
@ifsecure Cool blog! The first problem feels like an issue with coverage being a poor approx. for program state. But approaches like IJON haven’t seen much success AFAIK in the real world. Do you think prob 1 gets fixed with better state approx or is the mutational fuzzer still needed?
English
1
0
1
427
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
Jackalope and Tinyinst have been working on arm64 macs for a while, but now you should also be able to run against arm64e binaries (i.e. binaries that ship with the os) with some modification to the system. For details, see github.com/googleprojectz…
English
2
23
123
7.7K
Ivan Fratric 💙💛 retweetledi
Natalie Silvanovich
Natalie Silvanovich@natashenka·
In the final part of his blog series, @tiraniddo tells the story of how a bug was introduced into a Windows API. Code re-writes can improve security, but it’s important not to forget the security properties the code needs to enforce in the process. projectzero.google/2026/02/gphfh-…
English
0
54
190
21.4K