🔥 Direct hit! @shift_crops just popped the @CanonUSA imageCLASS MF654Cdw at #Pwn2Own. They head off to the disclosure room to show how nyan cat magically appeared. #P2OIreland
I reported an arbitrary code execution in Unity Runtime, which affects all versions starting from Unity 2017.1.
As the vulnerability can be exploited without specific usage, I strongly encourage developers to patch.
Technical details below:
https://t.co/af3d28rXw3
Whew! They made plenty of last minute changes to their code, but the GMO Cybersecurity by Ierae, Inc. team successfully exploit the Apline iLX-507. It's their second win of the contest. They head off to the disclosure room to provide details. #P2OAuto#Pwn2Own
Confirmed! The GMO Cybersecurity team used a single stack-based buffer overflow to confirm their second round exploit of the Kenwood IVI. They earn $10,000 and 2 Master of Pwn points. #P2OAuto
Nice! The team from GMO Cybersecurity by Ierae, Inc. wasted no time in their first #Pwn2Own entry. They popped the #Kenwood IVI in mere seconds (after hours of research of course). They head back for their first ever disclosure. #P2OAuto