#kernel_security wyniki wyszukiwania

#Kernel_Security 1⃣. NT OS Kernel Information Disclosure Vulnerability (CVE-2025-53136, CVE-2024-43511) - crowdfense.com/nt-os-kernel-i… // A race condition in Windows' "NtQuerySystemInformation()" allows kernel address leaks and potential privilege escalation across recent versions…


#Kernel_Security Oops! It's a kernel stack use-after-free: Exploiting NVIDIA's GPU Linux drivers blog.quarkslab.com/nvidia_gpu_ker… // This article details two bugs (CVE-2025-23300, CVE-2025-23280) in the NVIDIA Linux Open GPU Kernel Modules and demonstrates how they can be exploited. The…


#exploit #Kernel_Security Defeating KASLR by Doing Nothing at All googleprojectzero.blogspot.com/2025/11/defeat… // The Linux kernel's static, predictable linear mapping on Android devices undermines KASLR's effectiveness, enabling potential exploitation despite address randomization efforts


#reversing #Kernel_Security #Hardware_Security "Training Solo: On the Limitations of Domain Isolation Against Spectre-v2 Attacks", 2025. ]-> Open-source tooling, test cases, and PoC exploits - github.com/vusec/training… // The paper presents three new Spectre attack variants that…


#Kernel_Security #Malware_analysis 1⃣ BombShell: The Signed Backdoor Hiding in Plain Sight on Framework Devices eclypsium.com/blog/bombshell… 2⃣ Singularity: Deep Dive into a Modern Stealth Linux Kernel Rootkit blog.kyntra.io/Singularity-A-… ]-> Full Source Code - github.com/MatheuZSecurit… 3⃣…


#tools #Kernel_Security Linux Kernel Runtime Guard (LKRG), v.1.0. ]-> lkrg.org ]-> github.com/lkrg-org/lkrg // LKRG - kernel module that performs runtime integrity checking of the kernel and detection of security vulnerability exploits against the kernel,…


#exploit #Kernel_Security 1. CVE-2025-22056: The tragedy of Netfilter Tunnel - dawnslab.jd.com/CVE-2025-22056 2. CVE-2023-52922: UaF in CAN BCM subsystem leading to information disclosure - allelesecurity.com/use-after-free… 3. CVE-2025-22037: Remote NULL Deref in Linux KSMBD -…


#exploit #Kernel_Security Ksmbd Vulnerability Research Part 1 - CVE-2024-50283, CVE-2024-50285, CVE-2024-50286 - blog.doyensec.com/2025/01/07/ksm… Part 2 - Fuzzing Improvements and Vulnerability Discovery - blog.doyensec.com/2025/09/02/ksm… Part 3 - Exploiting CVE-2025-37947 -…


#exploit #Kernel_Security Exploiting eneio64.sys Kernel Driver on Windows 11 by Turning Physical Memory R/W into Virtual Memory R/W xacone.github.io/eneio-driver.h… ]-> Exploit for eneio64.sys Kernel Driver // a walkthrough of designing a POC for exploiting CVE-2020-12446, a…


#Kernel_Security Linux Kernel Exploitation Part 1 - Cross-Cache Attack - r1ru.github.io/posts/1/ Part 2 - Dirty PageTable - r1ru.github.io/posts/2/ Part 3 - DirtyCred - r1ru.github.io/posts/3/ Part 4 - Dirty Pipe - r1ru.github.io/posts/4/ Part 5 - USMA (User Space Mapping Attack)…


#exploit #Kernel_Security CVE-2025-38236: From Chrome renderer code exec to kernel with MSG_OOB googleprojectzero.blogspot.com/2025/08/from-c… ]-> PoC code - project-zero.issues.chromium.org/issues/4230239… // Chrome's Linux desktop renderer sandbox exposes kernel attack surface that is never legitimately used in the sandbox


#Kernel_Security Linux Kernel netfilter: ipset: Missing Range Check LPE ssd-disclosure.com/linux-kernel-n… // A vulnerability in Linux kernel's ipset allows out-of-bounds memory writes via crafted IP ranges, enabling privilege escalation and requiring immediate kernel updates


#exploit #Kernel_Security Defeating KASLR by Doing Nothing at All googleprojectzero.blogspot.com/2025/11/defeat… // The Linux kernel's static, predictable linear mapping on Android devices undermines KASLR's effectiveness, enabling potential exploitation despite address randomization efforts


#Kernel_Security Oops! It's a kernel stack use-after-free: Exploiting NVIDIA's GPU Linux drivers blog.quarkslab.com/nvidia_gpu_ker… // This article details two bugs (CVE-2025-23300, CVE-2025-23280) in the NVIDIA Linux Open GPU Kernel Modules and demonstrates how they can be exploited. The…


#reversing #Kernel_Security #Hardware_Security "Training Solo: On the Limitations of Domain Isolation Against Spectre-v2 Attacks", 2025. ]-> Open-source tooling, test cases, and PoC exploits - github.com/vusec/training… // The paper presents three new Spectre attack variants that…


#Kernel_Security #Malware_analysis 1⃣ BombShell: The Signed Backdoor Hiding in Plain Sight on Framework Devices eclypsium.com/blog/bombshell… 2⃣ Singularity: Deep Dive into a Modern Stealth Linux Kernel Rootkit blog.kyntra.io/Singularity-A-… ]-> Full Source Code - github.com/MatheuZSecurit… 3⃣…


#exploit #Kernel_Security Ksmbd Vulnerability Research Part 1 - CVE-2024-50283, CVE-2024-50285, CVE-2024-50286 - blog.doyensec.com/2025/01/07/ksm… Part 2 - Fuzzing Improvements and Vulnerability Discovery - blog.doyensec.com/2025/09/02/ksm… Part 3 - Exploiting CVE-2025-37947 -…


#tools #Kernel_Security Linux Kernel Runtime Guard (LKRG), v.1.0. ]-> lkrg.org ]-> github.com/lkrg-org/lkrg // LKRG - kernel module that performs runtime integrity checking of the kernel and detection of security vulnerability exploits against the kernel,…


#Kernel_Security 1⃣. NT OS Kernel Information Disclosure Vulnerability (CVE-2025-53136, CVE-2024-43511) - crowdfense.com/nt-os-kernel-i… // A race condition in Windows' "NtQuerySystemInformation()" allows kernel address leaks and potential privilege escalation across recent versions…


#exploit #Kernel_Security Exploiting eneio64.sys Kernel Driver on Windows 11 by Turning Physical Memory R/W into Virtual Memory R/W xacone.github.io/eneio-driver.h… ]-> Exploit for eneio64.sys Kernel Driver // a walkthrough of designing a POC for exploiting CVE-2020-12446, a…


#Kernel_Security Linux Kernel netfilter: ipset: Missing Range Check LPE ssd-disclosure.com/linux-kernel-n… // A vulnerability in Linux kernel's ipset allows out-of-bounds memory writes via crafted IP ranges, enabling privilege escalation and requiring immediate kernel updates


#Events #Research #Kernel_Security 34th USENIX Security Symposium: "System Register Hijacking: Compromising Kernel Integrity By Turning System Registers Against the System", 2025. ]-> Artifacts - zenodo.org/records/151464… // ..While all of our techniques present new avenues for…


#exploit #Kernel_Security CVE-2025-38236: From Chrome renderer code exec to kernel with MSG_OOB googleprojectzero.blogspot.com/2025/08/from-c… ]-> PoC code - project-zero.issues.chromium.org/issues/4230239… // Chrome's Linux desktop renderer sandbox exposes kernel attack surface that is never legitimately used in the sandbox


#Kernel_Security #Hardware_Security "Heracles: Chosen Plaintext Attack on AMD SEV-SNP", 2025. ]-> github.com/heracles-attack // In our case studies, we leak kernel memory, crypto keys, and user passwords, as well as demonstrate web session hijacking

github.com

Heracles

Heracles has 5 repositories available. Follow their code on GitHub.


#reversing #Kernel_Security Debugging the Pixel 8 kernel via KGDB xairy.io/articles/pixel… // The instructions cover building and flashing a custom Pixel 8 kernel to enable KGDB, breaking into KGDB either via ADB by relying on /proc/sysrq-trigger or purely over a serial…


#Events #Fuzzing #Kernel_Security "Bypassing Kernel Barriers: Fuzzing Linux Kernel in Userspace with Linux Kernel Library", LSSNA 2025. ]-> A collection of user-space Linux kernel specific guided fuzzers based on LKL - github.com/atrosinenko/kb… ]-> Linux Security Summit North…

github.com

GitHub - atrosinenko/kbdysch: A collection of user-space Linux kernel specific guided fuzzers based...

A collection of user-space Linux kernel specific guided fuzzers based on LKL - atrosinenko/kbdysch


#exploit #Kernel_Security 1. CVE-2025-22056: The tragedy of Netfilter Tunnel - dawnslab.jd.com/CVE-2025-22056 2. CVE-2023-52922: UaF in CAN BCM subsystem leading to information disclosure - allelesecurity.com/use-after-free… 3. CVE-2025-22037: Remote NULL Deref in Linux KSMBD -…


Guten Morgen. Ohne Vorankündigung #Win10 #Kernel_Security

ONE996's tweet image. Guten Morgen. Ohne Vorankündigung #Win10 #Kernel_Security

Loading...

Something went wrong.


Something went wrong.


United States Trends