Yaaaaasss! 👑 Kentaro Kawane of GMO Cybersecurity by Ierae was able to exploit Microsoft Windows 11! If confirmed, they win $30,000 and 3 Master of Pwn points. They're off to the disclosure room to drop the deets. #Pwn2Own#P2OBerlin
I just released some free exploit development CTFs based on real world CVEs. They include hints, walkthroughs and working exploits if you get stuck.
https://t.co/e3AKxsi7H8
I found a vulnerability in Oracle VirtualBox (CVE-2026-21957) back in September 2025. It can be turned into AAR/AAW, and then escaping the VM is pretty easy.
I originally planned to find a vulnerability for Pwn2Own, but since I found the vuln in September, sitting on a practical vuln for that long didn’t feel very ethical, so I eventually reported it to ZDI. But I still finished the exploitation + demo video as practice.
Collision! @N4NU of GMO Cybersecurity by Ierae targeted the Alpine iLX-F511, hitting a one-vulnerability collision with a previous attempt and earning $2,500 USD and 1 Master of Pwn point. #Pwn2Own#P2OAuto
Collision! @N4NU of GMO Cybersecurity by Ierae targeted the Alpine iLX-F511, hitting a one-vulnerability collision with a previous attempt and earning $2,500 USD and 1 Master of Pwn point. #Pwn2Own#P2OAuto
We have another collision! @_N4NU_ of GMO Cybersecurity chained three bugs against Kenwood - including an n‑day hard‑coded credential, incorrect permissions on a critical resource, and command injection - to earn $8,000 USD and 1.75 Master of Pwn points. #Pwn2Own#P2OAuto
We have another collision! @_N4NU_ of GMO Cybersecurity chained three bugs against Kenwood - including an n‑day hard‑coded credential, incorrect permissions on a critical resource, and command injection - to earn $8,000 USD and 1.75 Master of Pwn points. #Pwn2Own#P2OAuto
🔥 Direct hit! @shift_crops just popped the @CanonUSA imageCLASS MF654Cdw at #Pwn2Own. They head off to the disclosure room to show how nyan cat magically appeared. #P2OIreland
📢 Confirmed: @shift_crops of GMO Cybersecurity used a stack based buffer overflow to exploit the @CanonUSA imageCLASS MF654Cdw. Their seconf round win earns them $10,000 and 2 Master of Pwn points. #Pwn2Own
please join the server https://t.co/CaJF459BIZ to discuss further. At the same time, if you are an existing team planning to organize and looking for members and new ideas, I will be more than happy to join and exchange ideas. (FYI, I am not affliated with any team right now)
both for the participants and spectators (and even people outside CTF community). I am now looking for like-minded players who also wanted to make changes to the current format and are willing to discuss/organize the DEF CON CTF for the upcoming years. If you are interested,