[Research] Starting Chrome Exploitation with Type Confusion 101 ^-^☆ Part 3.
hackyboiz.github.io/2025/09/26/OUY…
Hello — OUYA77 here. While writing my Chrome research post I found there’s more related material than I expected, so I’ve been debating how much to include and how deep to go.…
𝗛𝗼𝘄 𝗱𝗼𝗲𝘀 𝗪𝗵𝗮𝘁𝘀𝗔𝗽𝗽 𝗵𝗮𝗻𝗱𝗹𝗲 𝗯𝗶𝗹𝗹𝗶𝗼𝗻𝘀 𝗼𝗳 𝗺𝗲𝘀𝘀𝗮𝗴𝗲𝘀 𝗲𝘃𝗲𝗿𝘆 𝗱𝗮𝘆?
WhatsApp is built on a 𝗵𝗶𝗴𝗵𝗹𝘆 𝗼𝗽𝘁𝗶𝗺𝗶𝘇𝗲𝗱 𝗲𝘃𝗲𝗻𝘁-𝗱𝗿𝗶𝘃𝗲𝗻 𝗮𝗿𝗰𝗵𝗶𝘁𝗲𝗰𝘁𝘂𝗿𝗲, where services for messaging, calls, media sharing, status, and…
Say hello to Eternal Tux🐧, a 0-click RCE exploit against the Linux kernel from KSMBD N-Days (CVE-2023-52440 & CVE-2023-4130)
willsroot.io/2025/09/ksmbd-…
Cheers to @u1f383 for finding these CVEs + the OffensiveCon talk from gteissier & @laomaiweng for inspiration!
This is the iOS DNG image RawCamera parsing (CVE-2025-43300) recent used whatsapp 0click.
github.com/qriousec/rawca…
( Repo included others relevant image format parser as well, look pretty auditable! )
I’ve brought you a real iOS MTE bypass retrospectively:
the overflow happens inside the co-processor (no MTE), then abuses trusted RPCs to gain kernel R/W — sidestepping MTE on the AP entirely.
googleprojectzero.blogspot.com/2022/06/curiou…
This is why we can't have nice things - starlabs.sg/blog/2023/07-p… - there's a nice kernel feature which is disabled in many kernels bcoz it provides a heap spraying gadget :c
Thx @patryk4815 for showing me this; Fwiw Golang implemented this github.com/golang/go/issu… too (screenshot)
#Research#cryptography
"A Formal Analysis of Apple's iMessage PQ3 Protocol", 2025.
]-> formal models and proofs of Apple's iMessage PQ3 protocol - zenodo.org/records/147106…
// a detailed formal model of PQ3, a precise specification of its fine-grained security properties, and…
My timeline is full of 𝗶𝗢𝗦 𝟬-𝗰𝗹𝗶𝗰𝗸 𝗲𝘅𝗽𝗹𝗼𝗶𝘁 again. If you’re new to these bugs, check out my write-up on my own fuzzing experience with 𝗜𝗺𝗮𝗴𝗲𝗜𝗢 from last year.
r00tkitsmm.github.io/fuzzing/2024/0…
LPE / RCE Exploits for various vulnerable "Bloatware" products:
⭐️1-click RCE in Asus DriverHub
⭐️LPE in MSI Centre (CVE-2025-27812, CVE-2025-27813)
⭐️LPE / RCE in Acer Control Centre (CVE-2025-5491)
⭐️LPE in Razer Synapse 4 (CVE-2025-27811)
github.com/sensepost/bloa…
[Research] macOS: Part2 - Sandbox Escape (en)
hackyboiz.github.io/2025/08/07/cla…
Hi, this is clalxk. In Part 2 of my macOS security series, I dive into Sandbox Escape techniques, covering both historical flaws like CVE-2022-26696 and the newly discovered CVE-2025-31191.
This post walks…
213 Followers 719 FollowingBible reader
Isaac Newton biblical views supporter.
My tweets are not my employer's views.
Zero day VR+XDEV:
https://t.co/9hoc97AaQR
1 Followers 170 FollowingRecruiting webshell engine ers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/0uBk8ldpzF
890 Followers 1K Following2x Founder @VoltAI & @Hackmetrix, Security Researcher. D̶o̶n̶’̶t̶ have the drive to become a big scary famous hacker. Always watching, never seen.
14 Followers 97 FollowingBaila Bavaria ("Tanz in Bayern") ist eine Initiative von Vladimir Toledo Sánchez (native cuban), in Kooperation mit Integrationbeirat Augsburg & Kinderland
53 Followers 2K Following🇳🇱MR. Simon Poortman General, King of the Netherlands 👑 As Police officer Took an oath http://FSA.USDA.GOV994 as Bond Chancellor for international
11K Followers 314 FollowingAgentless Linux security. No endpoint agents and no drama. Linux malware, forensics, intrusion detection, and hacking. Founder @SandflySecurity.
73K Followers 28 FollowingChào Mọi Người ! VCK mk có mở nhóm telegrams để Úp FULL CLIP trong đó. AE nào tham gia Inbox cho VCK mk nhé
Link nhóm chát: https://t.co/VJk5riM4aN
3K Followers 1K FollowingI like to post about tech things, mostly apple. Sometimes #appleinternal (sorry), genshin (also sorry). Opinions might not be 100% mine. She/her, minor
3K Followers 126 Followingcybersecurity enthusiast, author. speaker, mathematician. Love my wife and kids. Author of MD MZ, MalWild and Maldev for Ethical Hackers (2022-2024) books.
19K Followers 298 Following#OSINT treasure hunter, investigator, #CyberThreatIntel analyst. Opinions are my own. Follow me on Telegram https://t.co/i6VBbeUXgd for cyber news.
4K Followers 12 FollowingReal-time threat and infostealer intelligence for MSSPs, enterprises, and researchers. Detect leaks, monitor takeovers and respond instantly.
103K Followers 2K FollowingFollow for posts about GitHub repos, DSPy, and agents
Subscribe for top posts
DM to share your AI project (Due to volume of DMs I'll prioritize subscribers)
181 Followers 1 FollowingYour deep-diving External Attack Surface Management solution made in Germany. We cover your entire asset base. Yes, this includes your mobile apps!
36K Followers 3K FollowingSituational Awareness | Threat Intelligence | cybertracker | Hacktivism | Meme Farmer
Digital Owl of the Cyber Realm
Posts and Opinions are my own
1K Followers 126 FollowingSecurity Professional and Researcher with over a decade of experience. I'm fairly low profile, but share useful info from time to time.
26K Followers 1K FollowingSenior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
11K Followers 228 FollowingSharing teardown images of military and aerospace electronics. Presenting the structure without judgment.|I run an FPGA store 👇🏻
206K Followers 781 FollowingThe International Institute for Strategic Studies is a world-leading authority on global security, political risk and military conflict.
No recent Favorites. New Favorites will appear here.