@jgrusko

Security researcher @Apple

Joined August 2010
💥BOOM!💥 Another privilege escalation blog, this time showcasing how to convert arbitrary file deletions 🗑️ to SYSTEM command prompt🌈 CVE-2023-27470. Learn about TOCTOU, pseudo-symlinks, MSI rollback exploits, and, of course, how to protect yourselves! mandiant.com/resources/blog/…
8
198
6
507
88,150
Hello.. is this thing still on? It's 2023, so here's a fun new blogpost on how we used Intel's x86 CPU JTAG to dump the infamous "secret bootrom" in Microsoft's original Xbox: blog.ret2.io/2023/08/09/jtag…
12
141
5
416
45,116
Enhancing Chromium’s Memory Safety with Armv9 -- community.arm.com/arm-commun…
12
1
39
9,928
finally... hello, PS5 PSP :)
127
237
50
1,486
354,269
Me, starting to analyze a new piece of software: I basically know how this works already, I just need to learn a few of the finer details Me, a week later: I don't know anything about this software, or computers in general.
6
73
7
491
35,753
A rowhammer-style but different (and worse?) mechanism to induce DRAM bit flips. Get popcorn.
8
18
3
94
43,498
CVE-2023-2008 - Analyzing and exploiting a bug in the udmabuf driver by @dialluvioso_ and @esanfelix labs.bluefrostsecurity.de/bl…
50
1
127
22,609
I can finally have closure and peace of mind
We've been asked to share the kernel challenge we had at OffensiveCon. You can download it at static.bluefrostsecurity.de/… and give it a try. It was meant to be solved live at the conference, but apparently the noisy environment and german keyboard layout made it too hard :').
2
10
2,094
Here are the slides for my keynote, 'Mobile Exploitation, the past, present, and the future' at #Zer0Con2023. Zer0con was a blast as always, thank you @POC_Crew!! 🚀💫 github.com/externalist/prese…
12
138
1
416
91,165
✨Amazing detection and analysis by @_clem1 and Google TAG on 2 different campaigns using 5 different 0-days and numerous n-days. Android, iOS, and Samsung devices were targeted blog.google/threat-analysis-…
1
30
3
104
35,029
"a software engineer and user of 4chan."
4
5
53
5,158
It's time everybody!!! the OffensiveCon23 ticket shop is now open! Get your tickets quickly, as they tend to run out pretty soon. offensivecon.org/register.ht…
4
37
16
83
66,890
Old news for us, but others might find it interesting: willsroot.io/2022/12/entrybl… See: nitter.cf/grsecurity/status/1128… (2019) nitter.cf/grsecurity/status/9547… (2018) Users should not take too seriously the cover stories used to disguise embargoed vulnerability fixes.
Based solely on what you've read from Linus (git.kernel.org/pub/scm/linux…) and publications like LWN, (lwn.net/Articles/738975/ lwn.net/Articles/741878/) do the current KAISER/PTI implementations prevent defeating KASLR via Meltdown on Intel CPUs?
36%Yes
64%No
109 votes • Final results
4
2
20
6,960
How the 8086 processor's microcode engine works righto.com/2022/11/how-8086-…
14
29