🚨 Introducing "ITScape" (CVE-2026-46316)
A Guest-to-Host Escape in KVM/arm64. Guest-side actions alone exploit a use-after-free to run root-privileged code in the host kernel.
Unlike the commonly published QEMU escapes, the bug lives in in-kernel KVM, not QEMU. On a successful exploit, commands run with host kernel privilege rather than the privilege of a user process, threatening the guest-host isolation of multi-tenant arm64 public clouds.
To the best of public knowledge, the first Guest-to-Host Escape Exploit targeting in-kernel KVM/arm64.
Details: https://t.co/CtZOQEzIdg
📢 CALL FOR PAPERS IS OPEN! 📢
Ready to share your latest security research with the community at Hexacon? The stage is yours.
Submit your talks here: https://t.co/ErBKilro3k 💻✨
🔥 Excited to announce our keynote!
We are thrilled to welcome Bruce Dang (@brucedang) and Thai Duong (@XorNinja) from @calif_io! With all their recent AI buzz, we had to check they aren't just LLMs in a trench coat. 🤖🧥
🎟️ Ticketing opens this Thursday at 2:00 PM CEST ⏰
Zak Brown a confirmé que McLaren pourrait envisager de fabriquer ses propres moteurs dans le futur, dans un contexte où la FIA a assuré que les V8 feront le retour au plus tard en 2031 ! 🧡💬
"Si l'on nous proposait une formule de moteur financièrement viable, alors oui, nous l'examinerions, ainsi que la technologie."
(via @SBJ)
#F1
iOS for Security Engineers by Quentin Meffre (@0xdagger) and Victor Cutillas (@v1csec)
📅 Oct 12-15
📍 Espace Vinci or Espace Cléry, Paris 2nd
👉 https://t.co/qsRDOljksx
Deep dive into the provisionning an on-prem low-privileged #LLM stack, with air-gapped networking and GPU-isolation, hardened down to kernel modules.
What could possibly go wrong?
Read the full article here: https://t.co/OS4clOUn2N
At #Pwn2Own Berlin 2025, a full exploit chain against VMware Workstation was demonstrated via a heap overflow in the PVSCSI controller.
Despite Windows 11 LFH mitigations, advanced heap shaping and side-channel techniques enabled a reliable exploit.
🔍 Full technical write-up 👇
https://t.co/R0E5Uqql1E
🔺This is the first talk I've given in 6 years – featuring formal verification of post-quantum cryptography, the evolution of the Secure Page Table Monitor, a view into Memory Integrity Enforcement, updates to Apple Security Bounty… and a personal note.
🔥 #Synacktiv’s 2026 internship book is out!
Whether you're into pentest, reverse engineering, incident response or development, you’ll find our full list of internships plus practical tips to boost your chances.
📬 Send us your CV: https://t.co/nJVbZLhQs4
At #Pwn2Own2025, our experts @Tek_7987 & @_Anyfun remotely compromised a Synology Beestation Plus via a pre-auth exploit, leading to full system takeover.
The vuln is now tracked as CVE-2025-12686 🔍
🔗 Full write-up: https://t.co/Nf5qyl6Uhg
If you missed HEXACON 2025 or want to rewatch some of the talks, they’re now available on our YouTube channel 📽️
Enjoy the content, and see you in 2026!
https://t.co/KHHVAGY48M