Linux Kernel Security

410 posts

Linux Kernel Security

Linux Kernel Security

@linkersec

Links related to Linux kernel security and exploitation. Maintained by @andreyknvl and @a13xp0p0v. Also on https://t.co/GVE11dpBb8 and https://t.co/YpxPWXnA6Z.

Katılım Eylül 2021
0 Takip Edilen10K Takipçiler
Linux Kernel Security
Linux Kernel Security@linkersec·
Out-of-Cancel: A Vulnerability Class Rooted in Workqueue Cancellation APIs @v4bel published an article describing a complicated exploit of a race condition caused by a misuse of the cancel_work_sync() kernel API in the network subsystem v4bel.github.io/linux/2026/03/…
Linux Kernel Security tweet media
English
1
17
76
6.4K
Linux Kernel Security
Linux Kernel Security@linkersec·
Walkthrough of an N-day Android GPU driver vulnerability Talk by Angus about analyzing CVE-2022-22706 — a logical bug in the Mali GPU driver that allows getting write access to read-only memory. youtube.com/watch?v=G71dB0…
YouTube video
YouTube
English
0
18
92
8.8K
Linux Kernel Security
Linux Kernel Security@linkersec·
From KernelSnitch to Practical msg_msg/pipe_buffer Heap KASLR Leaks Article by Lukas Maar about evaluating the KernelSnitch timing side-channel attack on a variety of systems, including Android. lukasmaar.github.io/posts/heap-kas…
Linux Kernel Security tweet media
English
1
22
89
4.8K
Linux Kernel Security
Linux Kernel Security@linkersec·
The LLM was used to discover multiple 0-days in the Linux kernel and also write privilege escalation exploits for a few previously known vulnerabilities; the article provides a detailed write-up for two such exploits.
English
0
0
2
913
Linux Kernel Security
Linux Kernel Security@linkersec·
Assessing Claude Mythos Preview’s cybersecurity capabilities Article by Nicholas Carlini et. al about the security research capabilities of the new Anthropic's LLM called Claude Mythos Preview. red.anthropic.com/2026/mythos-pr…
Linux Kernel Security tweet media
English
1
3
32
2.6K
Linux Kernel Security
Linux Kernel Security@linkersec·
The new mode leverages a Clang 22 feature called "allocation tokens". Unlike RANDOM_KMALLOC_CACHES, this mode deterministically assigns caches to allocations based on their types, and not allocation sites.
English
0
0
4
671
Linux Kernel Security
Linux Kernel Security@linkersec·
slab: support for compiler-assisted type-based slab cache partitioning @maelver posted a kernel patch that provides an alternative mode to RANDOM_KMALLOC_CACHES called TYPED_KMALLOC_CACHES. @google.com/" target="_blank" rel="nofollow noopener">lore.kernel.org/all/2026033111…
Linux Kernel Security tweet media
English
1
3
13
1.4K
Linux Kernel Security
Linux Kernel Security@linkersec·
CrackArmor: Multiple vulnerabilities in AppArmor Article about a variety of vulnerabilities found in the AppArmor LSM implementation, including a few kernel memory corruptions. Authors exploited them to achieve LPE on Ubuntu and Debian. cdn2.qualys.com/advisory/2026/…
Linux Kernel Security tweet media
English
0
2
19
1.3K
Linux Kernel Security
Linux Kernel Security@linkersec·
A Race Within A Race: Exploiting CVE-2025-38617 in Linux Packet Sockets Excellent article by Quang Le about exploiting CVE-2025-38617 — a race condition that leads to a use-after-free in the packet sockets implementation. blog.calif.io/p/a-race-withi…
Linux Kernel Security tweet media
English
2
23
117
6.3K
Linux Kernel Security
Linux Kernel Security@linkersec·
The researcher glitched the setresuid syscall handler to bypass its checks and obtain the UID of 0. Bypassing SELinux via glitching remains to be investigated.
English
0
0
1
916
Linux Kernel Security
Linux Kernel Security@linkersec·
[Cryptodev-linux] Page-level UAF exploitation @nasm_re posted an article about exploiting a page-level UAF in the out-of-tree cryptodev-linux driver. The researcher modified struct file sprayed into a freed page to escalate privileges. nasm.re/posts/cryptode…
English
0
12
82
4.1K
Linux Kernel Security
Linux Kernel Security@linkersec·
Authors found multiple Android vendor drivers affected by the issue. They also wrote an exploit for the IMG DXT GPU driver to escalate privileges on Pixel 10.
English
0
0
3
1.1K