AI is getting really useful for vuln research. With some manual guidance, I used GPT-5.4 to find some Windows kernel bugs, and the points in the image still feel obvious.
Even so, its already a fun and powerful tool in the workflow. Curious how other researchers are using it😃
Congratulations to all the researchers recognized in this quarter’s MSRC 2025 Q3 Security Researcher Leaderboard! Thanks to all the researchers who partnered with us for your hard work and continued dedication to securing our customers.
Learn more in our blog post: https://t.co/AmXl9IrbTX
We also want to recognize the top 10 researchers in the leaderboard:
🥇Brad Schlintz (@nmdhkr)
🥈 Yuval Avrahami
🥉 b2ahex
4. Jianyang song
5. Felix B.
6. Haifei Li @HaifeiLi
6. tuandv of Viettel Cyber Security
8. P1hcn
9. 0x140ce @0x140ce
10. Matthew Jensen
Congratulations to all the researchers recognized in this quarter’s MSRC 2022 Q4 Security Researcher Leaderboard!
For more information, check out our blog post: https://t.co/Hhai3YinAM
#cybersecurity#securityresearch#msrc
Here is my writeup for 2 Windows kernel bugs I reported to MSRC. Both are race conditions that cause Use-After-Free. As there is very few windows kernel writeups I share my research methodology and more. Hope it helps other researchers. Share it😀
https://t.co/QVPqfb5HFf
Congratulations to our MSRC 2022 Most Valuable Researchers! Thank you to all the researchers who have helped secure our customers. Check out our blog for the full list: https://t.co/vYnm9u3xSE #cybersecurity#securityresearch
Sadly, the nt object reference count overflow vulnerability I reported earlier was defined as a "moderate severity, non-persistent denial of service vulnerability"
no bounty..😑
I make a BSOD of Win10 with CVE-2022-30151, which was discovered by @b2ahex and patched last week. This vulnerability is a race condition bug, which results in Double-Free. I share my scenario slide to trigger this vulnerability and a crash screenshot. Thx.