jeff

113 posts

jeff banner
jeff

jeff

@jeffssh

Forever standing on the shoulders of giants

Katılım Haziran 2018
299 Takip Edilen941 Takipçiler
Sabitlenmiş Tweet
jeff
jeff@jeffssh·
I have completed the FORCED ENTRY RCE + SBX chain with a PAC bypass. The calculator payload can be found here: github.com/jeffssh/CVE-20…. I learned a lot about iOS exploitation and can't wait to share that in a blog post, which I'll release along with the code to generate this PDF.
English
9
92
407
59.8K
jeff retweetledi
Alex Albert
Alex Albert@alexalbert__·
With the help of Claude Mythos Preview, the Firefox team fixed more security bugs in April than in the past 15 months combined.
Alex Albert tweet media
English
345
1.3K
15.5K
1.5M
jeff retweetledi
chompie
chompie@chompie1337·
sorry babe, not tonight 2x claude usage during off-hours
chompie tweet media
English
6
12
200
14.7K
jeff retweetledi
𝚊𝚕𝚔𝚊𝚕𝚒
𝚊𝚕𝚔𝚊𝚕𝚒@alkalinesec·
shaking my head while excitedly reading a citizen lab / project zero post so everyone in my work-from-home office knows i disagree with human rights violations
English
5
5
63
5.5K
jeff retweetledi
cts🌸
cts🌸@gf_256·
speedrunners reinvented Use After Free and called it "stale reference manipulation" one day theyre gonna invent type confusion and call it item abuse
cts🌸 tweet media
English
16
97
2K
77.3K
jeff retweetledi
Brendan Dolan-Gavitt
As the operator of a soup kitchen, I don’t see why I should be expected to fix health code violations people report. After all, we are run almost entirely by volunteers
English
17
8
107
19.2K
0ca
0ca@francisco_oca·
Take a look at the new BoxPwnr WebUI, you can quickly replay a trace/trajectory, jump around, speed it up, and navigate it through a cool LLM generated attack path. Try it yourself! 0ca.github.io/BoxPwnr-Attemp… Sound: On🎵
English
4
6
18
2.3K
jeff
jeff@jeffssh·
@thezdi Who could have seen this coming…
English
0
0
24
4.8K
jeff retweetledi
Dohyun Lee
Dohyun Lee@l33d0hyun·
OMG.. whatsapp 0c in pwn2own
Dohyun Lee tweet media
English
17
105
724
350.3K
jeff
jeff@jeffssh·
@Fox0x01 They took my FORCEDENTRY PoC too 😕
English
0
0
1
239
Azeria
Azeria@Fox0x01·
Oh no, but how will I learn about iOS now? @minacrissDev_, only because the post is a few years old doesn’t meant people won’t remember who wrote it. ;)
Azeria tweet mediaAzeria tweet mediaAzeria tweet media
English
23
19
298
30.4K
jeff retweetledi
xvonfers
xvonfers@xvonfers·
xvonfers tweet media
ZXX
1
7
55
4.7K
j j
j j@mistymntncop·
Over 6 months and no ITW V8 exploits? Have I spoken too soon?..
English
4
1
46
9.5K
Josh
Josh@boredpentester·
Thought I'd try to write an exploit for @rdjgr's ZDI-CAN-25676 (JBIG2 integer overflow) to finally get a shell on my fairly up-to-date Lexmark. It's going well so far! Big thanks to Rick for the tips along the way!
Josh tweet media
English
2
6
65
4.9K
jeff
jeff@jeffssh·
@dillon_franke From the rop chain it looks like the exploit was done on an intel machine. Did you ever look at arm? Was PAC an issue?
English
1
0
1
250
jeff retweetledi
chompie
chompie@chompie1337·
Me and the homies are dropping browser exploits on the red team engagement 😎. Find out how to bypass WDAC + execute native shellcode using this one weird trick -- exploiting the V8 engine of a vulnerable trusted application. ibm.com/think/x-force/…
English
23
234
794
136.2K
jeff retweetledi
Adam Crosser
Adam Crosser@UNC1739·
I'm thrilled to announce that my talk Ghost Calls: Abusing Web Conferencing for Covert Command & Control was accepted to #BHUSA 2025 (CC: @BlackHatEvents) #ghost-calls-abusing-web-conferencing-for-covert-command--control-45491" target="_blank" rel="nofollow noopener">blackhat.com/us-25/briefing…
English
0
5
19
2.7K
j j
j j@mistymntncop·
@xvonfers If this vuln requires the --script-context-mutable-heap-int32 flag then how was it exploit in V8CTF i wonder 🧐
English
2
0
8
1.3K