xpldotjs

908 posts

xpldotjs

xpldotjs

@xpldotjs

Katılım Mayıs 2021
313 Takip Edilen131 Takipçiler
xpldotjs retweetledi
suzaki
suzaki@KuniSuzaki·
Paper PowerHooK: Enabling Software-Based Power Side Channels Against AMD SEV Technologies via Transient-Execution Replay [WOOT 26] tugraz.elsevierpure.com/en/publication… AMD SEV-SNPに対する電力サイドチャネル攻撃PowerHooK。 AES-NIに対して攻撃してAESキーを取得。
日本語
0
1
9
598
xpldotjs retweetledi
NebuSec
NebuSec@nebusecurity·
A single bit was all it took. We successfully exploited the kernelCTF LTS kernel with a novel 1-bit flip attack against a 15-year-old vulnerability. It affects the latest versions of all major distributions, including Android, Ubuntu, Debian, Red Hat, CentOS, and Fedora.
NebuSec tweet media
English
7
103
701
133.8K
xpldotjs retweetledi
chiefpie
chiefpie@cplearns2h4ck·
Some of the bugs I disclosed to MSRC last year is now public on the company's advisory page. E.g: CVE-2025-47985 Windows Event Tracing Elevation of Privilege starlabs.sg/advisories/25/…
English
3
36
126
12.9K
xpldotjs retweetledi
Linux Kernel Security
Linux Kernel Security@linkersec·
From KernelSnitch to Practical msg_msg/pipe_buffer Heap KASLR Leaks Article by Lukas Maar about evaluating the KernelSnitch timing side-channel attack on a variety of systems, including Android. lukasmaar.github.io/posts/heap-kas…
Linux Kernel Security tweet media
English
1
22
89
4.7K
xpldotjs retweetledi
Varik
Varik@D4RK7ET·
Went from "V8 exploitation seems unachievable" to solving all 9 @pwncollege V8 challenges. Wrote a guide on getting into browser exploitation if you already have classic pwn knowledge. varik.dev/blog/v8/gettin…
English
1
106
434
21K
xpldotjs retweetledi
Kağan
Kağan@kagancapar·
I discovered CVE-2026-5201. A heap buffer overflow in GNOME's gdk-pixbuf JPEG loader (CVSS 7.5). A 122-byte JPEG crashes any app using gdk_pixbuf_new_from_file(). RCE demonstrated on 32-bit via vtable hijack. Full write-up and PoCs: github.com/kagancapar/CVE…
Kağan tweet media
English
1
16
77
5.9K
xpldotjs retweetledi
Alex Plaskett
Alex Plaskett@alexjplaskett·
An analysis of CVE-2026-21236 - A heap based buffer overflow in the Microsoft Windows Kernel afd.sys - was just published by @ASN_Sinanju_06S a recent secondment with my team EDG! Nice work for her first triage of a kernel memory corruption bug! nccgroup.com/research/vulne…
English
3
64
230
16.5K