fidgeting bits
@FidgetingBits
voice coding nix junkie
You might like
Hey, I'm going to ask you something just in case. I teach a Linux kernel exploitation course and I wanted to differentiate to the class the kinds of randomizations we see in memory. Even without KASLR or any other configurable randomization, if you check a slub cache right after…
🚨More than a year after the XZ Utils crisis, we found 35+ publicly available Docker Hub images still carrying the backdoor, some tagged “latest”. Long-tail supply-chain risk is real! Read the blog: binarly.io/blog/persisten…
arm64: Linear mapping is mapped at the same static virtual address project-zero.issues.chromium.org/issues/4342084…
[SECURITY] firefox-patch-bin, librewolf-fix-bin and zen-browser-patched-bin AUR packages contain malware lists.archlinux.org/archives/list/…
I had fun playing with Bitchat today. A MITM attacker can pretend to be a "favorited" peer which has been marked as trusted. This lets an attacker inject themselves into trusted conversations My general thoughts about vibe coding and cryptography are written within
🧠 [POC2025] TRAINING Windows Kernel Exploitation: Becoming an "Advanced" Exploit Developer by Cedric Halbronn (@saidelike) 📅 Nov 10-12 (3 days) 📍 Four Seasons Hotel Seoul, South Korea 🔗 More info powerofcommunity.net/#training #POC2025
A bit late, but I just published my blog post on bypassing Ubuntu’s sandbox! Hope you enjoy it! u1f383.github.io/linux/2025/06/…
My writeup on CVE-2025-31200. This ones an interesting one blog.noahhw.dev/posts/cve-2025…. thanks to @bellis1000 for the shoutout.
Had some fun with rust and wrote a kernel. github.com/xwings/elinOS elinOS RISC-V64 kernel
🚨🚨🚨We just broke everyone’s favorite CTF PoW🚨🚨🚨 Our teammate managed to achieve a 20x SPEEDUP on kctf pow through AVX512 on Zen 5. Full details here: anemato.de/blog/kctf-vdf The Sloth VDF is dead😵 This is why kernelCTF no longer has PoW!
anemato.de
Beating the kCTF PoW with AVX512IFMA for $51k
PoW is gone 🦀🦀
This might be the best bug I found. Never thought I'd be writing a kernel exploit as reliable, clean and fast as a browser exploit. For a while I actually used this to root my research phone when can't be bothered to patch the rom: github.blog/2022-07-27-cor…
Meet our new buddy, Argusee — an AI-powered, automated vulnerability hunter that has already discovered 15+ vulnerabilities across projects, including a previously unknown Linux kernel flaw (CVE-2025-37891) enabling LPE. Demo and details: darknavy.org/blog/argusee_a…
We still need help getting early access to Android 16 sources prior to the stable release in June. Every mainstream Android OEM has it. We're currently spending significant time on reverse engineering Android 16 Beta releases. It's a huge waste compared to having what we need.
#OffensiveCon25 videos are now up! youtube.com/playlist?list=…
Thrilled to share our latest deep dive into Windows Kernel Streaming! Just presented this research at @offensive_con. Check it out: devco.re/blog/2025/05/1…
I wanted to end last year with a vm escape, took me a bit longer but I want to present you my latest public research: A VM escape in Oracle VirtualBox using only one integer overflow bug! This was fixed in April 15 and assigned CVE-2025-30712. github.com/google/securit…
United States Trends
- 1. Cam Coleman 3,302 posts
- 2. Vandy 5,304 posts
- 3. Iowa 29.9K posts
- 4. Auburn 14.3K posts
- 5. #AEWCollision 3,146 posts
- 6. #UFCVegas111 10.8K posts
- 7. Oregon 40.5K posts
- 8. Dante Moore 3,590 posts
- 9. Wisconsin 17.9K posts
- 10. Bauer Sharp N/A
- 11. Vanderbilt 4,051 posts
- 12. Heisman 12.2K posts
- 13. Indiana 43.3K posts
- 14. Penn State 26.4K posts
- 15. Mendoza 24.7K posts
- 16. #Svengoolie 1,091 posts
- 17. Pavia 2,267 posts
- 18. Bama 9,182 posts
- 19. Jedd Fisch N/A
- 20. Badgers 3,924 posts
You might like
-
Cedric Halbronn
@saidelike -
Alex Plaskett
@alexjplaskett -
Moshe Kol
@0xkol -
Eloi Benoist-Vanderbeken
@elvanderb -
Axel Souchet
@0vercl0k -
maxpl0it
@maxpl0it -
G. Geshev
@munmap -
`Ivan
@Ivanlef0u -
Jonathan Salwan
@JonathanSalwan -
POC_Crew
@POC_Crew -
Jeremy Fetiveau
@__x86 -
stephen
@_tsuro -
Hossein Lotfi
@hosselot -
Seth Jenkins
@__sethJenkins -
b1ack0wl
@b1ack0wl
Something went wrong.
Something went wrong.