I originally prepared this bug for Pwn2Own Berlin. A few days before the contest, a CVE got assigned. So, here is my technical analysis and exploitation strategy for CVE-2026-40369: a 12-byte kernel increment, exploitable both as an LPE and SBX.
https://t.co/agxyuR2AjE
Love the timing of MSRC alienating the entire vuln research community while AI makes finding/exploiting bugs cheaper than a Netflix subscription. What a truly visionary threat model
Bug count != exploitable bug. Finding != chaining.
LLMs are exceptional at pattern recognition on known bug classes. They are not reasoning about novel failure modes in complex multi-component systems.
The hard bugs still require humans. https://t.co/RISinVDT3d
The wait is over! mona v3 is now available.
Supports Python 2 & 3,
32- and 64-bit targets,
WinDBG/WinDBGX.
Faster, leaner, broader built for modern Windows debugging and exploit development.
#mona#corelan
https://t.co/8tkCp0wD0C
Sharing is caring 💛
Finally back to the forge. ⚒️
I revisited an old friend, #CaddyWebServer, and forged kCaddy: a malleable Caddy redirector for #RedTeam ops.
New post: proxying and obfuscating #Evilginx with M365, Google, and Okta phishlets.
https://t.co/TFCOXdx1Hr