/explore

Click through on any links that interest you or select the planets on the right to continue exploring the Outer Web.
You are here

blog.thalium.re
| | blog.quarkslab.com
3.0 parsecs away

Travel
| | Following our presentation at Black Hat USA, in this blog post we provide some details on CVE-2022-20233, the latest vulnerability we found on Titan M, and how we exploited it to obtain code execution on the chip.
| | parsiya.net
1.5 parsecs away

Travel
| | [AI summary] The text discusses a security vulnerability in the VS Code Remote - WSL extension, specifically the CVE-2021-43907 bug. It outlines the vulnerability's details, the researcher's attempts to exploit it, and the steps taken to address it. The author provides a detailed analysis of the attack vector, the mitigation strategies, and the broader implications of such vulnerabilities in software development.
| | comsecuris.com
3.0 parsecs away

Travel
| | [AI summary] This blog post discusses a detailed exploit chain targeting a mobile phone's application processor OS through a compromised modem. The author outlines the process of identifying vulnerabilities in the baseband firmware, reverse engineering the MT6795's cellular stack layers, and attempting to fuzz the MM layer for potential memory corruption issues. The post also touches on the challenges of creating a persistent rootkit via the modem and the importance of hardware isolation in securing mobile platforms.
| | volatility-labs.blogspot.com
22.7 parsecs away

Travel
| Month of Volatility Plugins In this blog post I will analyze the Phalanax2 rootkit using both Volatility as well as traditional malwar...