A little late but I finally finished the writeup for the intended solution of my v8 pwnable.
You can find my writeup here: https://t.co/AcrslIbu65
tldr: v8 sandbox escape by utilizing the memory corruption API and without the usual JIT technique.
If you ever wanted to get into v8 exploitation, you still have ~9h to check out my v8 pwn challenge "Date" for KITCTFCTF (https://t.co/nOOPSi4aw3). Get first blood now before it's too late ๐ฅ
We are proud to announce GPN CTF!
From easy challenges to hard challenges, GPN CTF covers it all.
It starts on Friday already, so don't miss it ๐ฟ
Date: Friday 09 June 2023, 10:00 UTC to Saturday 10 June 2023, 21:59:59 UTC.
More information at https://t.co/3hqCovP055
We are proud to announce our second CTF! Play on-site at @entropiagpn GPN21 or online!
Date: Friday, 09 June 2023, 10:00 UTC โ Saturday, 10 June 2023, 21:59 UTC
Our Motto is "fl4gtory" so keep ๐ until our CTF logo is built! Part 2/6 โ๏ธ
More information at https://t.co/Ffv04s2YV8
Congratulations to the winners of this year's KITCTFCTF:
1๏ธโฃ CubeMastery
2๏ธโฃ @0tolerance_ctf
3๏ธโฃ b0ng0s
We hope everyone had fun with our challenges, and we'll see you all again next time ๐
If you ever wanted to get into v8 exploitation, you still have ~9h to check out my v8 pwn challenge "Date" for KITCTFCTF (https://t.co/nOOPSi4aw3). Get first blood now before it's too late ๐ฅ
We are proud to announce our first ever CTF!
It starts on the next weekend already, so don't miss it ๐ฟ
Date: Friday, 09 Dec. 2022, 18:00 UTC - Saturday, 10 Dec. 2022, 23:59 UTC
More information at https://t.co/z1oPqUor0h
After reversing last week, this week @ju256_ will do an intro(++) about binary exploitation. As usual at 7pm, but mind the ROOM CHANGE: We are in -120 in the CS building from now on.
Any ideas for Masters/Bachelors thesis topics around malware analysis, reverse engineering, low-level security or other infosec topics?
Please RT too - I get this question a lot and I always struggle to answer. So I hope to use our community's wisdom and send folks here :)
https://t.co/wCRNF1ycq2 thanks to @_clem1, @5aelo for their joint work on this. This has been a huge effort to pull apart and document almost every byte of a multi-year in-the-wild exploitation campaign, which used 14 different iOS exploits.
My security friends, @Pink_P4nther is an OSCP & has created numerous vuln vms for the community to practice with. Yet heโs struggling to get a job cuz of experience & locale. Seems like a great opportunity to hire a smart, up and comer.