Diving into cybersecurity research, uncovering vulnerabilities & exploits. Shedding light on digital shadows, one discovery at a time. π» #InfoSec#CyberSec
The "Randomized slab caches for kmalloc()" patch was merged into mainline.
With CONFIG_RANDOM_KMALLOC_CACHES=y, each kmalloc cache is split into 16. kmalloc uses a random one for each allocation based on the code location. Choices change every reboot.
https://t.co/EoSYZxc8gI
π€ Follow us for more updates as we continue our analysis of CVE-2023-28227 and work towards uncovering the true nature of this bug. π΅οΈπ‘ #VulnerabilityResearch#StayInformed
π¨ Early info on CVE-2023-28227: Windows Bluetooth RCE! π§ We're working hard to analyze the patch and pinpoint the bug. Stay tuned for updates! #CVE2023#BluetoothRCE#WindowsSecurity
π This value is 15 bytes less than the L2CAP MTU 0x69B (1,691) in relation with BNEP. We're digging deeper to understand the implications of this change. βοΈπ¬ #L2CAP#MTU
π Boost product security with Variant Analysis! ππ‘ Discover its benefits in our latest blog post.
π Let's work together to stay ahead of cyber adversaries. β¨π€
π Read more: https://t.co/nKz6yD8r3g
π Contact us for a FREE consultation. #VariantAnalysis#ObscillumResearch
π Discover more about the importance of variant analysis in product security by checking out the full post on Obscillum's LinkedIn page! ππ #LinkedInPost#LearnMore β‘οΈ https://t.co/jHM1Vv6G1w
π Have you considered the power of variant analysis in product security? It's time to dive into the benefits of this often-underestimated approach. π§π‘ #ProductSecurity#VariantAnalysis
π― By doing so, organizations can identify and patch similar vulnerabilities within their products, enhancing their product security posture and staying ahead of adversaries. βοΈπ‘οΈ #StayAhead#RobustSecurity
π If you found these insights into the thought process and logic behind vulnerability research helpful, give us a follow for more valuable content! π @Obscillum#VulnerabilityResearchTips
π Getting started with vulnerability research on large, complex targets can be daunting. But what do you do with non-exploitable bugs found within simple routines that return a size value, where the caller is responsible for verification? π§ #BugHunting#VulnerabilityResearch
π Vulnerability research is a journey, and staying informed is key. Keep learning, and you'll become a more effective researcher, contributing to the security of large, complex systems. π #StayInformed#VulnerabilityResearchSuccess
Stay informed and up-to-date with the latest product security strategies by following our Twitter @Obscillum & Linkedin https://t.co/jHM1Vv6G1w
ππ #ProductSecurity#StayUpdated
Interested in learning more? Contact us for a FREE consultation to discuss your product security needs and start addressing those inherited risks. ππ¬ #FreeConsultation