We really should be talking about this more....KASLR is just not working properly on Android right now, and it hasn't for a long time.
https://t.co/AE0vBXEcob
From kernel oops to kernel exploit: How two little bugs (CVE-2025-23330, CVE-2025-23280) in #NVIDIA open GPU #Linux driver can lead to full system compromise.
Full technical breakdown inside, #vmalloc exploitation technique included!
https://t.co/lVx97yzxyU
Thrilled to announce my new Project Zero blog post is LIVE! 🎉 I detail my knowledge-driven fuzzing process to find sandbox escape vulnerabilities in CoreAudio on MacOS.
I'll talk about this and the exploitation process next week @offensive_con!
https://t.co/9Oj2AaxbRk
Un article de @t0muxx, chercheur pour @shindan_io , traitant d'Operation Triangulation vient de paraitre dans le dernier @MISCRedac.
Voici le synopsis:
"La révélation de l'Opération Triangulation par Kaspersky, une attaque dont ils ont été la cible en 2023, a mis en lumière une campagne d'espionnage particulièrement sophistiquée ciblant les appareils iOS. Fait exceptionnel pour ce type de menaces, les échantillons du logiciel espion ont été publiés, ouvrant la voie à une analyse détaillée des techniques de surveillance employées. Cet article se propose d’examiner les traces laissées par ces techniques, notamment l'enregistrement du microphone et la prise d'information de la configuration du téléphone, et les méthodes permettant de les détecter."
Vous pouvez acheter le magazine en kiosque ou ici:
https://t.co/1lGmG7RGkN
How does the new iOS inactivity reboot work? What does it protect from?
I reverse engineered the kernel extension and the secure enclave processor, where this feature is implemented.
https://t.co/VbdxhueXtL
Mathieu Farrell (@coiffeur0x90) discovered a dylib injection vulnerability in Microsoft Teams on MacOS.
The bug allows an attacker to secretly spy on users through their microphone and camera.
Here he explains how he identified and exploited it:
https://t.co/dw2HFyRIwk
@vxunderground@XintraOrg Dracula, drawn by the allure of information, enters the iOS ecosystem to seize its power. He delves into code, expecting to manipulate it as he did with human minds. But he finds himself trapped in a sandbox, where every permission is quarantined, and system calls are denied.
Happy to share our first blogpost by @t0muxx about Operation triangulation.
It gives our results of the keychain module analysis:
https://t.co/P4OcjPRcVL
#iOS#spyware#mobilesecurity