|
You are here |
blog.thalium.re | ||
| | | | |
blog.quarkslab.com
|
|
| | | | | Following our presentation at Black Hat USA, in this blog post we provide some details on CVE-2022-20233, the latest vulnerability we found on Titan M, and how we exploited it to obtain code execution on the chip. | |
| | | | |
parsiya.net
|
|
| | | | | [AI summary] The text discusses a security vulnerability in the VS Code Remote - WSL extension, specifically the CVE-2021-43907 bug. It outlines the vulnerability's details, the researcher's attempts to exploit it, and the steps taken to address it. The author provides a detailed analysis of the attack vector, the mitigation strategies, and the broader implications of such vulnerabilities in software development. | |
| | | | |
comsecuris.com
|
|
| | | | | [AI summary] This blog post discusses a detailed exploit chain targeting a mobile phone's application processor OS through a compromised modem. The author outlines the process of identifying vulnerabilities in the baseband firmware, reverse engineering the MT6795's cellular stack layers, and attempting to fuzz the MM layer for potential memory corruption issues. The post also touches on the challenges of creating a persistent rootkit via the modem and the importance of hardware isolation in securing mobile platforms. | |
| | | | |
volatility-labs.blogspot.com
|
|
| | | Month of Volatility Plugins In this blog post I will analyze the Phalanax2 rootkit using both Volatility as well as traditional malwar... | ||