_seg_fault__'s profile picture. Vulnerability Research ❤️

Divyanshu

@_seg_fault__

Vulnerability Research ❤️

Divyanshu reposted

BREAKING NEWS The Royal Swedish Academy of Sciences has decided to award the 2025 #NobelPrize in Physics to John Clarke, Michel H. Devoret and John M. Martinis “for the discovery of macroscopic quantum mechanical tunnelling and energy quantisation in an electric circuit.”

NobelPrize's tweet image. BREAKING NEWS
The Royal Swedish Academy of Sciences has decided to award the 2025 #NobelPrize in Physics to John Clarke, Michel H. Devoret and John M. Martinis “for the discovery of macroscopic quantum mechanical tunnelling and energy quantisation in an electric circuit.”

I love stories like these. Nothing is impossible if you want to win badly ❤️❤️. Inspiring ✨

The things I have now are things I would only ever have dreamed of about 3-4 years ago when I was keen on changing my fate! Truly I can never thank God enough 💗🍃 I am live example of if you believe and desire with all your might you can achieve😭 We use to sleep on 50 years…

shealtielanzz's tweet image. The things I have now are things I would only ever have dreamed of about 3-4 years ago when I was keen on changing my fate!
Truly I can never thank God enough 💗🍃

I am live example of if you believe and desire with all your might you can achieve😭

We use to sleep on 50 years…
shealtielanzz's tweet image. The things I have now are things I would only ever have dreamed of about 3-4 years ago when I was keen on changing my fate!
Truly I can never thank God enough 💗🍃

I am live example of if you believe and desire with all your might you can achieve😭

We use to sleep on 50 years…


Divyanshu reposted

Whoah... $250000 (CVE-2025-4609, similar to CVE-2025-2783/412578726)[412578726][Mojo][IpczDriver]ipcz bug -> renderer duplicate browser process handle -> escape sbx is now open with PoC & exploit(success rate is nearly 70%-80%) issues.chromium.org/issues/4125787… issues.chromium.org/issues/4125787…

xvonfers's tweet image. Whoah... $250000

(CVE-2025-4609, similar to CVE-2025-2783/412578726)[412578726][Mojo][IpczDriver]ipcz bug -> renderer duplicate browser process handle -> escape sbx is now open with PoC & exploit(success rate is nearly 70%-80%)
issues.chromium.org/issues/4125787…
issues.chromium.org/issues/4125787…

(CVE-2025-4609)[412578726][Mojo][IpczDriver]Incorrect handle provided in unspecified circumstances chromium-review.googlesource.com/c/chromium/src… Reported by Micky on 2025-04-22

xvonfers's tweet image. (CVE-2025-4609)[412578726][Mojo][IpczDriver]Incorrect handle provided in unspecified circumstances
chromium-review.googlesource.com/c/chromium/src…

Reported by Micky on 2025-04-22


Divyanshu reposted

woah... (CVE-2025-3619)[Critical][media][409619251]Heap-BoF in Codecs(when the size of data to be copied ('copy_size') exceeded the allocated 'buffer_size') chromium-review.googlesource.com/c/chromium/src… chromereleases.googleblog.com/2025/04/stable… Reported by Elias Hohl on 2025-04-09

xvonfers's tweet image. woah...
(CVE-2025-3619)[Critical][media][409619251]Heap-BoF in Codecs(when the size of data to be copied ('copy_size') exceeded the allocated 'buffer_size')
chromium-review.googlesource.com/c/chromium/src…
chromereleases.googleblog.com/2025/04/stable…

Reported by Elias Hohl on 2025-04-09
xvonfers's tweet image. woah...
(CVE-2025-3619)[Critical][media][409619251]Heap-BoF in Codecs(when the size of data to be copied ('copy_size') exceeded the allocated 'buffer_size')
chromium-review.googlesource.com/c/chromium/src…
chromereleases.googleblog.com/2025/04/stable…

Reported by Elias Hohl on 2025-04-09

Divyanshu reposted

Leak hole PoC for Chrome in-the-wild vulnerability CVE-2025-6554 published yesterday: github.com/DarkNavySecuri…

DarkNavyOrg's tweet image. Leak hole PoC for Chrome in-the-wild vulnerability CVE-2025-6554 published yesterday:
github.com/DarkNavySecuri…
DarkNavyOrg's tweet image. Leak hole PoC for Chrome in-the-wild vulnerability CVE-2025-6554 published yesterday:
github.com/DarkNavySecuri…

Divyanshu reposted

When life gives you tangerines🍊 Intern Lin Ze Wei's task: Port a 2-bug exploit to Pixel 6 Pro Problem: One bug "doesn't work" Solution: Make it work with 1 bug Sometimes the best research comes from working with what you think you have starlabs.sg/blog/2025/06-s…


Personal Update: Moved to Spain for Vulnerability Research. Hopefully better bugs and more beautiful exploits this year :)🤞🤞


Divyanshu reposted

Compromised renderer can control your mouse and escape sbx (reward: $50000) crbug.com/370856871


Divyanshu reposted

I have posted the slides for the talk @chompie1337 and I gave this past weekend at @h2hconference -> The Kernel Hacker’s Guide to the Galaxy: Automating Exploit Engineering Workflows #H2HC github.com/FuzzySecurity/…

FuzzySec's tweet image. I have posted the slides for the talk @chompie1337 and I gave this past weekend at @h2hconference -> The Kernel Hacker’s Guide to the Galaxy: Automating Exploit Engineering Workflows #H2HC

github.com/FuzzySecurity/…

Divyanshu reposted

I wrote an explained writeup for a windows kernel ctf challenge that came in Sekai Ctf 2024 . The author of the challenge is @bienpnn . This is a nice challenge for those who want to try windows kernel. I also learnt something new. Thanks @bienpnn . nu1lptr0.github.io/2024/10/10/win…


Divyanshu reposted

This patch day, Microsoft introduced new garbage collection mechanism in win32k. In addition to the previously introduced type isolation mechanism, there is now garbage collection, making it more difficult to control the heap feng shui.

TinySecEx's tweet image. This patch day, Microsoft introduced new garbage collection mechanism in win32k. In addition to the previously introduced type isolation mechanism, there is now garbage collection, making it more difficult to control the heap feng shui.
TinySecEx's tweet image. This patch day, Microsoft introduced new garbage collection mechanism in win32k. In addition to the previously introduced type isolation mechanism, there is now garbage collection, making it more difficult to control the heap feng shui.

Wrote a thing at seg-fault.gitbook.io/researchs/wind… N-day analysis of CVE-2023-29360 Feedbacks welcomed. Tried to keep it short and crisp!


My VR journey so far is like 4 bugs, 1 doesn't work on the latest version due to unknown fix my MS, 1 bug found by XYZ person at Pwn2Own, 1 bug reported by someone else a bit before me and a new bug that seems to be un-exploitable :( Sucks to the core but gotta keep going !


Divyanshu reposted

The results are in! We're proud to announce the Top 10 Web Hacking Techniques of 2023! portswigger.net/research/top-1…


Divyanshu reposted

From a VR student today on our ROP chain lessons. I'm dying 😂: "This week's been like"


The most memorable event of my life so far comes to an end :) Time to get back to grinding !

_seg_fault__'s tweet image. The most memorable event of my life so far comes to an end :)

Time to get back to grinding !

My first coin ! A year ago even in my dreams I could have never imagined getting myself one. Had only seen others getting such things. A huge thing for me and something I'm never gonna forget in my life. Thanks to Google for making this happen. Security Research ❤️

_seg_fault__'s tweet image. My first coin !

A year ago even in my dreams I could have never imagined getting myself one. Had only seen others getting such things.

A huge thing for me and something I'm never gonna forget in my life.

Thanks to Google for making this happen.

Security Research ❤️

Loading...

Something went wrong.


Something went wrong.