Have you ever wanted to get into #Android security? This is how we popped Galaxy #S8 with 11+ bugs and features across 6 different applications! The final result is persistent code execution from clicking a hyperlink. https://t.co/680Z30wwcl #Pwn2Own#MP2O
Touched down in SFO for [un]promoted and looking to catch up with any VR hackers! Catch me at the conference during the day or at any of the fine Irish establishments nearby later on :-)
I hear a high-profile Pwn2Own winner is fuming now that we've dropped a 0-day affecting their home setup. Perfect time to leverage that MITM access and ransack years' worth of bugs if you happen to be sitting in the right network π
Wheels up for Barcelona to catch up with half the worldβs offensive suppliers and speak at the inaugural VR meet-up with @InterruptLabs. Sun, Spyware & Suspicious Actors ππ₯ Like the BBC show, but swap questionable cultural exports for dual-use goodies. Weβre hiring :-)
Whipped up an agentic AI to hunt Samsung bugs for Pwn2Own.
It found a bunch, including one in Sammyβs own AI, Bixby.
The irony writes itself π€ππ₯
Another big confirmation! Ben R. And Georgi G. of Interrupt Labs used an improper input validation bug to take over the Samsung Galaxy S25 - enabling the camera and location tracking in the process. They earn $50,000 and 5 Master of Pwn points. #Pwn2Own
Astonished @Amnesty haven't called for punitive measures against the forklift manufacturer after the Louvre robbery. The international community must act swiftly to stem the rising tide of forklift misuse before another museum falls #ActNow#EndForkliftAbuse#SaveOurMuseums
@thezdi Meme exploits aside, we tackle exciting browser and mobile security challenges. Always seeking experienced vulnerability researchers and exploit developers who love solving hard problems. Ping me with questions or apply directly on our website
Mildly pimped-up demo of our #Pwn2Own exploit shown on a Galaxy S23. Mind the hysterical memes-to-0day ratio π Props to @thezdi for putting up with us and to all the hackers who made it a blast.
Still looking for top-tier artisanal crafts(wo)men and pipefitters to tackle leaky Mojo plumbing, deal with some persistent blob deposits, and plod knee-deep in pungent IPCZ sewage. Come get your hands dirty and hack with @0vercl0k, @maxpl0it , and me :-) https://t.co/H1G76BT9sN
Not sure why I bother with this cesspit of a platform, but apparently some of you nerds still lurk around, so here we go.
Joffrey and I will be off to #Zer0Con2024 to drop some meme bugs and bad-mouth the usual OEM suspects. Plenty of bugs to go around and some only half-fixed.
The Secret Intelligence Service (MI6) and @GCHQ work to defend the UKβs security and prosperity π¬π§
This week, Foreign Secretary @David_Cameron was briefed on how they are tackling threats like terrorism, cyber and hostile state activity.
We've been selected as a @NCSC CyberFirst Partner in recognition of our support of the programme!
We're excited to help build the next generation of cybersecurity professionals and introduce them to the awesome world of Vulnerability Research.
Back from another epic edition of the superb @0x41con. Welcoming meet-up, exceptional crowd, and some seriously mind-boggling content. Thank you @xerub for keeping it real and @f_roncari, @Simone_Ferrini, and @jndok for hosting. And thanks everyone for the lovely feedback.π₯β€οΈβπ₯π₯
DM for deets or come chat to any of my workmates lurking by the booth. Be based in UK, US, AU or CA. Exceptions on a case by case basis for researchers with proven track record.
Touched down in Berlin for you know what. Here with a bunch of nerds from @InterruptLabs and looking to poach some more. Always on the lookout for top talent to come help the team tackle the continuous stream of crashes in JS engines, file parsers, protocol stacks, and whatnot.
Ranging from software engineering to networking, we offer a whole host of technical roles at our sites across the UK. Further your skills and knowledge whilst helping to protect the nation.
Begin your #JourneyToGCHQ β¬οΈ
https://t.co/WlEdEwXboG
Applications are now open for our VRDP scheme for 2023! π
Regardless of previous experience, we're looking for keen problem solvers who are interested in a future career in #VulnerabilityResearch β if that sounds like you then please get in touch!
https://t.co/TpDunsQtCX
Back from #Hexacon after a few great days in Paname. We're seeking more π«π· hackers interested in auditing, fuzzing, triaging, reversing, or automation for any of the above. Please help me build the case for a π«π· office and mandatory π«π· classes for the rest of the company. π₯βοΈπ₯