Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @NedWilliamson
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @NedWilliamson
-
Pinned Tweet
My first blog post! tl;dr starting with VirtualBoxhttps://nedwill.github.io/blog/jekyll/update/2019/04/08/picking-a-target.html …
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
I finally got some time today to go for a bug on VirtualBox. Screen recorded for about 4 hours and went from basic fuzzer setup to legit looking bug in that time! Likely OOB write in [redacted] using my hybrid fuzz/audit approach. If exploitable I'll report it and prep the video.
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Also, it is interesting to note that these testcases were generated completely automatically by libprotobuf-mutator based fuzzing. I only specified how to call a (small) subset of kernel syscalls related to networking so far, and it explored to find these cases for me.
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
Here's the bug. Not entirely clear if this is powerful enough alone for tfp0, but I'm continuing to investigate and look for new bugs.https://twitter.com/ProjectZeroBugs/status/1130530826909675521 …
Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
When I reported CVE-2019-8605 I could only repro it on macOS with root user. I've found a way to reach it from the app sandbox on iOS. Don't update to 12.3 needlessly while I continue to investigate!
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Two more XNU iOS net stack bugs fixed in iOS 12.3. Write-ups/PoC coming next week. No tfp0 from these afaict.https://support.apple.com/en-us/HT210118
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Woohoo! Let's see more IPC-based full chains in 2019!
@fluoroacetate your turnhttps://twitter.com/dmxcsnsbh/status/1123846758528954368 …Thanks. Twitter will use this info to make your timeline better. UndoUndo -
BTW, I'm still continuing with the Virtualbox video after resounding feedback that this is something people want. To be transparent I'm switching the build system to CMake to make it easier to hack on the code; it's time consuming and "boring" but it *is* part of the process.
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Awesome to see a full chain exploit using IPC patched in Chrome today! It just goes to show that IPC is the weak link again after the win32k lockdown left exploit developers in a daze!https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_30.html …
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Really rethinking screen recording this bug hunting work. I can already tell how boring this is gonna be narrating after the fact! I'll probably just blog this one. Either way I have a good 10 hours or so of looking dumb just to prove there's no magic involved (for me). ;)
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
nedwill Retweeted
Interesting scam: Post fake exploit videos on Twitter to gain reputation, then offer paid trainings and disappear https://twitter.com/eip41414141/status/1120759306071097344 …
This Tweet is unavailable.Show this threadThanks. Twitter will use this info to make your timeline better. UndoUndo -
The real reason to do bug hunting is to give you motivation to learn boring stuff. When was the last time you read an IPv6 for BSD reference manual with desperate enthusiasm? What if it meant you could hack the iPhone? XD
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Going to take a look at SVGA next, the default graphics device for Windows 10 for Virtualbox. Thanks again to
@_niklasb for helpful pointers on target selection!Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Bye Reggie
really wonder if you ever used soundhax :)Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Just confirmed with
@_niklasb that 3d accel in virtual box is really, really bad. It's so bad it's not even really informative to demo so I'll continue with some default config attack surface. LolzThanks. Twitter will use this info to make your timeline better. UndoUndo -
This is just like PF_KEY all over again
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Might have a bug already if I'm not crazy... I just have no idea how this code is supposed to be working xD
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
nedwill Retweeted
Call for One Page Articles for the 1st issue of Paged Out! zin! (it's a new free experimental deeply technical zin we're starting; it's about programming/security/hacking/demoscene/retro/electronics/etc) Details: https://pagedout.institute/ Story: https://gynvael.coldwind.pl/?lang=en&id=707 Please RT :)pic.twitter.com/96yOT4bUuJ
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
Blog hosting platform suggestions? Gonna post some thoughts about the first target(s) for bug hunting.
Thanks. Twitter will use this info to make your timeline better. UndoUndo -
I've been planning for a long time to make a video of finding a 0day "live" (
@LiveOverflow style). I'll have to report any bug I find before posting the video, so it'll be some time. Anyone have any suggested targets? It's probably best if it's something I haven't seen before.Thanks. Twitter will use this info to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.