alephsecurity's profile picture. Security Research by HCL Tech

Aleph Research

@alephsecurity

Security Research by HCL Tech

As promised - after the first part discussing the nitty-gritty details of the research, here comes the juicy vulnerability report! Here's everything that could go wrong with your 2,000 ILS smart lock, culminating with a complete wireless takeover! alephsecurity.com/2024/03/07/kon…


Our newest research about smart locks is up! Enjoy (and lock the doors!) alephsecurity.com/2024/02/20/kon…


New research paper on smart air conditioner vulnerabilities found by the team: alephsecurity.com/2023/06/19/ele…


Presenting a short walkthrough on our journey running QEMU AFL++ on android we've done a few months ago @hackerschoice alephsecurity.com/2021/11/16/fuz…

I just compiled #QEMU for AFL on @Android! Now I can do blackbox #fuzzing from anywhere😉 #Noxpwaste

Gr33nh4t's tweet image. I just compiled #QEMU for AFL on @Android! Now I can do blackbox #fuzzing from anywhere😉   #Noxpwaste


As per the Linux embargo policy, a potential LPE Linux kernel vulnerability @Gr33nh4t discovered was made public today, 14 days after disclosure. Here are the details. alephsecurity.com/2021/10/20/sud…


During the pandemic @Gr33nh4t & @waveburst decided to improve our own office wireless equipment by finding vulnerabilities in them. Check out our new blog post about that! @ArubaNetworks alephsecurity.com/2021/07/15/aru…


We are excited to share an #XXE vulnerability in the JDOM @java library! discovered by @ST42562572 alephsecurity.com/vulns/aleph-20…


Aleph Research reposted

I just compiled #QEMU for AFL on @Android! Now I can do blackbox #fuzzing from anywhere😉 #Noxpwaste

Gr33nh4t's tweet image. I just compiled #QEMU for AFL on @Android! Now I can do blackbox #fuzzing from anywhere😉   #Noxpwaste

We're thrilled to publish our last #homograph #phishing attack post by @tzachyh. This time we found various implementation flaws in instant messaging clients. alephsecurity.com/2021/02/28/rev…


Aleph Research reposted

Last week I've finished a vulnerability disclosure with @ubuntu_sec of a few vulnerabilities I discovered in Ubuntu, they did an awesome job providing reliable fixes very quickly. I'll share more details about these vulnerabilities soon on @alephsecurity. ubuntu.com/security/notic…


Aleph Research reposted

Graphic framebuffer support! After a long while, found time for the iOS QEMU project and finally got graphics working on iOS 14! There's still a lot of work to arrange it but hope to release it soon with iOS 14 support.

JonathanAfek's tweet image. Graphic framebuffer support! After a long while, found time for the iOS QEMU project and finally got graphics working on iOS 14! There's still a lot of work to arrange it but hope to release it soon with iOS 14 support.

We are thrilled to present our follow-up research on Ruckus Wireless devices. @waveburst found new critical vulnerabilities and managed to overcome the previous research fix. alephsecurity.com/2020/10/14/ruc…


Aleph Research reposted

Now you can hook kernel functions with custom code and sniff all mach messages passed in the system. github.com/alephsecurity/…

JonathanAfek's tweet image. Now you can hook kernel functions with custom code and sniff all mach messages passed in the system. github.com/alephsecurity/…

Aleph Research reposted

#Ruckus has confirmed six additional CVEs for my latest research. I will present new RCEs on Ruckus devices using these vulnerabilities at #defcon28 #DEFCONSafeMode

waveburst's tweet image. #Ruckus has confirmed six additional CVEs for my latest research. I will present new RCEs on Ruckus devices using these vulnerabilities at #defcon28 #DEFCONSafeMode

Another milestone for iOS on QEMU! The project can now run with KVM! Go check out the new blog post by @levaronsky :) alephsecurity.com/2020/07/19/xnu…


New features added to our project's repository! * iOS on QEMU KVM support * ASLR disabled for user mode * TFP0 for user apps * CoreTrust patched - no need for static trust cache Check it out and feel free to contribute! github.com/alephsecurity/…


Our recent update enables communication with iOS on QEMU via TCP sockets, including SSH! @levaronsky explains the inner workings of our solution: alephsecurity.com/2020/03/29/xnu…


Aleph Research reposted

Now the iOS on QEMU project has most iOS original services, SSH , full disk images and a textual frame buffer, contact us if you want to participate! github.com/alephsecurity/… github.com/alephsecurity/…


Loading...

Something went wrong.


Something went wrong.