An interesting vulnerability discoverd by @hardw00t and me in the cellular component of iOS and its fundamental implementation, which was identified in iOS 14.x and fixed in iOS 15 allowed an attacker to leak sensitive user information was credited by Apple as CVE-2021-31001.
I'm open sourcing CFP Directory's CFP management system - Self-host your Call for Papers with full PII encryption — AND federate with the @cfpdirectory speaker network. Own your data. Keep the reach.
https://t.co/10Ql0BEMuy
(RTs greatly appreciated :P)
🌟 CXO Panel Spotlight! 🌟
Apps, Cloud, OT, IoT — the attack surface is massive, and hackers aren’t slowing down. But what if AI becomes the shield we’ve all been waiting for? 🤖⚔️
At BSides Ahmedabad 0x06, we’re diving into the future of defense with our CXO Panel:
“Securing Apps, Cloud, and OT/IoT: AI as the Next Layer of Defense.”
🎙 Moderator: @DamianGoh13
🗣 Panelists: Devam Shah, Syed Shahrukh Ahmed, @h4ckologic and Divan Raimagia
Expect battle-tested insights, bold strategies, and next-gen thinking on how to safeguard the systems powering our digital world. 🔐🚀
🎟 Standard Sale LIVE – book your tickets NOW➡️🔗https://t.co/SXQrWw6uVO
📅 12-13 September 2025
📍 AUDA Auditorium, Shela, Ahmedabad
#BSidesAhmedabad #CXOPanel #AIinCyber #CloudSecurity #AppSec #OTSecurity #IoTSecurity
Cybersecurity leadership is about foresight, precision, and building trust in every layer of technology.
We’re glad to welcome @h4ckologic, Senior Manager at Katim, as a CXO Speaker at BSides Ahmedabad 0x06.
With his rich experience in advancing secure communication and defense-grade security, Rajnish brings a perspective that blends strategy with innovation.
🎟 Standard Sale LIVE – book your tickets now before they vanish!➡️🔗https://t.co/SXQrWw6uVO
📅 12-13 September 2025
📍 AUDA Auditorium, Shela, Ahmedabad
#BSidesAhmedabad #CXOSpeaker #CyberLeadership #BSides0x06 #infosec
new blogpost time!!
this one's a fun writeup on a vulnerability chain i found across multiple google services that earned me a $4133.70 bounty
lots of fun css as usual! i had to recreate a bunch of drive/docs/gmail/youtube UIs c:
have fun!
https://t.co/64ZAIVHoSO
🔓📱 Our latest video is live: 'Hacking into iOS's VoLTE Implementation.'
🎙️Join us as @h4ckologic and Hardik Mehta delve into the intricacies of iOS security and explore the vulnerabilities within VoLTE.
🎥Watch now: https://t.co/BQENjQIot8
#hacking#ios#exploit#VoLTE
🏭 We've tested the new RCE in Microsoft Outlook (CVE-2024-21378) in a production environment and confirm it works well!
A brief instruction for red teams:
1. Compile our enhanced DLL 👉 https://t.co/cQWF8KM8vL
2. Use NetSPI's ruler and wait!
No back connect required!
🔥 📐📏
Thanks a lot @bsidesahmedabad for having us at #BsidesAhmedabad0x04 , it was an amazing experience meeting with the Indian hacker community and great minds. Hope to be here again in the future ❤️
We've just published "How to build custom scanners for web security automation", using a recent dive into automated race-condition detection by @albinowax as a case study. Enjoy!
https://t.co/iWfOpyoCpX
Get ready for an exciting event, everyone! 🚀
Our dynamic Tech Speaker duo, @h4ckologic and Hardik Mehta, has given us a sneak peek into their upcoming talk at the event. 🔍🎤 Get prepared for some incredible insights and thought-provoking discussions! 👽
🔥 Don't wait any longer; dive right in and make sure you're part of this captivating experience.
0-days exploited by #Predator spyware were delivered via man-in-the-middle (MITM) attack and 0-click vulnerability against #iOS and #Android
In the video below, I demonstrated how an attacker - using just smartphone - can trigger DNS spoofing attack to redirect device on the same wi-fi network to attacker controlled website. Such domain could deliver phishing or 0-day as in the case of Predator's browser exploit
https://t.co/Dh2pMlT0mF