Ben
@XploitBengineer
Android Vulnerability Researcher, Pwn2Own 202{3, 5}
New episode of chITchat with @DonnchaC from Security Lab at Amnesty 🙂 Big thanks to Donncha for taking time to have a chat! Episode is available on most platforms, but here's the Spotify link: open.spotify.com/episode/0drh0O…
I posted a short blog about how a Samsung GPU vulnerability (CVE-2025-21479) can be leveraged for an LPE on affected devices xploitbengineer.github.io/CVE-2025-21479
xploitbengineer.github.io
Exploiting CVE-2025-21479 on a Samsung S23
Motivation A couple of years ago, I picked up a few of Samsung S23’s at Pwn2Own.
Mildly pimped-up demo of our #Pwn2Own exploit shown on a Galaxy S23. Mind the hysterical memes-to-0day ratio 😅 Props to @thezdi for putting up with us and to all the hackers who made it a blast.
We did a thing!
Another big confirmation! Ben R. And Georgi G. of Interrupt Labs used an improper input validation bug to take over the Samsung Galaxy S25 - enabling the camera and location tracking in the process. They earn $50,000 and 5 Master of Pwn points. #Pwn2Own
Bang! Interrupt Labs successfully took over the #Samsung Galaxy 25 with 1 click. They remotely enabled the camera and location services, which has some frightening privacy implications. They head off to the disclosure room to explain how it works. #Pwn2Own
NEW: breach of Discord age verification data. For some users this means their passports & drivers licenses. Discord has only run age verification for 6 months. Age verification is a badly implemented data grab wrapped in a moral panic. Mark my words, as age verification…
Surprise episode drop! Thanks @pod2g for coming on the pod to talk about the early days of iOS hacking 📱😊 open.spotify.com/episode/6795JF… PS: this episode was recorded before the release of MTE so adjust for that 😅
Switching it up a bit with @PinkDraconian, we talk about ethical hacking, bug bounty and its challenges, and some tips and tricks that Robbe has learned along the way. Available on most streaming platforms. open.spotify.com/episode/1yjdwr…
NEED YOUR HELP! My Friend/Teacher Soroush (@irsdl) Is looking for a new company to join, you know him as the .NET-God, the guy who has popped exchange, sharepoint, has maintained ysoserial_.net for years, contributed to the exploitation scene numerous times, taught all of you…
only 3 seats left for the "Advanced .NET Exploitation" September edition at RomHack (@cybersaiyanIT), come on lads, make it happen, wanna go brag about selling out 😅 grab your seat 🪑 🪑 🪑 summoning.team
The amount of human capital squandered trying to work in 26C or get a good night's sleep in such heat is tragic. Anything over 24C in the office, and I'm ready to zone out. <19C in the bedroom at night is a must too. x.com/PetrHurtak/sta…
Another big confirmation! Ben R. And Georgi G. of Interrupt Labs used an improper input validation bug to take over the Samsung Galaxy S25 - enabling the camera and location tracking in the process. They earn $50,000 and 5 Master of Pwn points. #Pwn2Own
It's out! @hdemoff_ talks about what it's like being a developer for IDA Pro. Comment your quirkiest productivity methods so Henri doesn't feel so alone... Spotify: open.spotify.com/episode/21I7sk… Apple: podcasts.apple.com/us/podcast/hen… BuzzSprout: buzzsprout.com/2400544/episod…
buzzsprout.com
Henri - IDA Pro developer - chITchat by pamoutaf
I’m going to interview a IDA developer. What would you like to know? Fire away!!!🤗
Remember to roast AI when it's wrong, or it'll never never learn
We’re thrilled to welcoming back @InterruptLabs as an official sponsor of Hexacon! Interrupt Labs works at the cutting edge of vulnerability research and exploit development and it’s always pleasure having the team on board! 🤗
NEW EPISODE - Amat Cama Amat talks about Pwn2Own, the transition from CTF to real-world exploitation, or what a VR candidate should look like. He also shares a funny story on how he actually got in computer sciences. Thanks @amatcama for the fun chat! open.spotify.com/episode/4krg8z…
📣 Exciting news for aspiring vulnerability researchers - a selection of our internal VR Development Program training resources are now available on GitHub! Check them out at github.com/interruptlabs/… These ones are on software development: programming in C and Python.
United States Tendenze
- 1. Knicks 76.8K posts
- 2. Mariah 27.5K posts
- 3. NBA Cup 61K posts
- 4. Clarkson 8,522 posts
- 5. Tyler Kolek 7,227 posts
- 6. Wemby 27.2K posts
- 7. #NewYorkForever 4,746 posts
- 8. Brunson 23.6K posts
- 9. Josh Hart 5,627 posts
- 10. Thug 22K posts
- 11. Buck Rogers 2,392 posts
- 12. Mitchell Robinson 5,557 posts
- 13. #LMD7 50.4K posts
- 14. Gil Gerard 2,354 posts
- 15. Mike Brown 4,814 posts
- 16. Thea 13.6K posts
- 17. Dylan Harper 2,100 posts
- 18. Thibs 1,042 posts
- 19. Macklin Celebrini 2,033 posts
- 20. #WWENXT 19.4K posts
Something went wrong.
Something went wrong.