flanker017 (@flanker_hqd) 's Twitter Profile
flanker017

@flanker_hqd

ID: 2441839076

calendar_today13-04-2014 15:11:22

282 Tweet

4,4K Followers

420 Following

GEEKCON (@geekcontop) 's Twitter Profile Photo

๐ŸŽ‰ GEEKCON 2023, the upgraded version of GeekPwn, is calling for submission. Join the 15+5 In-depth Sharing at geekcon.top/en/doc/GEEKCONโ€ฆ to showcase your unique research, practical experience, and new technologies... Demos speak louder than words! #GEEKCON2023 #CyberSecurity

๐ŸŽ‰ GEEKCON 2023, the upgraded version of <a href="/GeekPwn/">GeekPwn</a>, is calling for submission. Join the 15+5 In-depth Sharing at geekcon.top/en/doc/GEEKCONโ€ฆ to showcase your unique research, practical experience, and new technologies... Demos speak louder than words! #GEEKCON2023 #CyberSecurity
DARKNAVY (@darknavyorg) 's Twitter Profile Photo

We've successfully exploited three RCE chains in Steam, one of which chains 4~6 pure logical bugs (features). Memory corruption vulnerabilities were also exploited. Stay tuned for the technical details on our blog after Valve fixes them.

GEEKCON (@geekcontop) 's Twitter Profile Photo

Happy Year of the Loong! ๐ŸŽ‰๐Ÿ‰ GEEKCON 2024 International Conference & Contest will be holding on May 25 - 26. Mark your calendars and stay tuned for updates. Calling all geeks and security enthusiasts! Join us and take the challenge now! geekcon.top/doc/GEEKCON%20โ€ฆ

Happy Year of the Loong! ๐ŸŽ‰๐Ÿ‰
GEEKCON 2024 International Conference &amp; Contest will be holding on May 25 - 26. Mark your calendars and stay tuned for updates. 
Calling all geeks and security enthusiasts! Join us and take the challenge now!
geekcon.top/doc/GEEKCON%20โ€ฆ
DARKNAVY (@darknavyorg) 's Twitter Profile Photo

Our new blog post -- AVSS Report: System Security Adversarial Capability Preliminary Evaluation of iOS, Android, and HarmonyOS - Kernel darknavy.org/blog/avss_repoโ€ฆ

flanker017 (@flanker_hqd) 's Twitter Profile Photo

Congrats to all the pwnie award winners this year, especially to my friend [email protected] and Tao Yan! Met many new friends in the Pwnie Awards afterparty, a great experience. Also made up for not being able to receive my award in person in 2022.

Congrats to all the pwnie award winners this year, especially to my friend <a href="/CodeColorist/">codecolorist@infosec.exchange</a> and <a href="/ga1ois/">Tao Yan</a>! Met many new friends in the <a href="/PwnieAwards/">Pwnie Awards</a> afterparty, a great experience.
Also made up for not being able to receive my award in person in 2022.
Denis Laskov ๐Ÿ‡ฎ๐Ÿ‡ฑ (@it4sec) 's Twitter Profile Photo

"Apple CarPlay: What's Under the Hood" - the newest and most detailed public research on CarPlay I've seen so far. Security analysis and fun memes included! ๐Ÿš˜ ๐Ÿ“ฒ ๐Ÿ”ฌ Presentation [PDF]: troopers.de/downloads/trooโ€ฆ Video: youtube.com/watch?v=cHhxJzโ€ฆ

"Apple CarPlay: What's Under the Hood" - the newest and most detailed public research on CarPlay I've seen so far. Security analysis and fun  memes included! ๐Ÿš˜ ๐Ÿ“ฒ ๐Ÿ”ฌ

Presentation [PDF]: troopers.de/downloads/trooโ€ฆ
Video: youtube.com/watch?v=cHhxJzโ€ฆ
flanker017 (@flanker_hqd) 's Twitter Profile Photo

Years later it's thrilled to back to Vancouver and speak again at CanSecWest. Brought to mind the good old days of playing Pwn2Own.

Years later it's thrilled to back to Vancouver and speak again at CanSecWest. Brought to mind the good old days of playing Pwn2Own.
Off-By-One Conference (@offbyoneconf) 's Twitter Profile Photo

Punching ๐ŸฅŠ presentation from hzshang , ๐’๐ข๐ฆ๐ฉ๐ฅ๐ž ๐ข๐ฌ ๐๐ž๐ฌ๐ญ: ๐“๐ก๐ž ๐ฃ๐จ๐ฎ๐ซ๐ง๐ž๐ฒ ๐จ๐Ÿ ๐ญ๐š๐ค๐ข๐ง๐  ๐จ๐ฏ๐ž๐ซ ๐ฆ๐จ๐›๐ข๐ฅ๐ž ๐ฌ๐ฒ๐ฌ๐ญ๐ž๐ฆ ๐ฎ๐ฌ๐ข๐ง๐  ๐š ๐†๐๐” ๐ฅ๐จ๐ ๐ข๐œ๐š๐ฅ ๐›๐ฎ๐ . We ๐Ÿฉท it at Off-By-One Conference 2025!

Punching ๐ŸฅŠ presentation from <a href="/hzshang15/">hzshang</a> , ๐’๐ข๐ฆ๐ฉ๐ฅ๐ž ๐ข๐ฌ ๐๐ž๐ฌ๐ญ: ๐“๐ก๐ž ๐ฃ๐จ๐ฎ๐ซ๐ง๐ž๐ฒ ๐จ๐Ÿ ๐ญ๐š๐ค๐ข๐ง๐  ๐จ๐ฏ๐ž๐ซ ๐ฆ๐จ๐›๐ข๐ฅ๐ž ๐ฌ๐ฒ๐ฌ๐ญ๐ž๐ฆ ๐ฎ๐ฌ๐ข๐ง๐  ๐š ๐†๐๐” ๐ฅ๐จ๐ ๐ข๐œ๐š๐ฅ ๐›๐ฎ๐ .
We ๐Ÿฉท it at <a href="/offbyoneconf/">Off-By-One Conference</a>  2025!
DawnSecurityLab (@dawnseclab) 's Twitter Profile Photo

New post: dawnslab.jd.com/%E4%B9%8B%E6%Aโ€ฆ writeup for CVE-2025-22056, which we also found but collide with other researchers. A nice bug that can be stably exploited to get kernel privilege on Ubuntu.

flanker017 (@flanker_hqd) 's Twitter Profile Photo

Our talk on #BadResolve series of CVEs in Android happening soon at 13:30 #defcon33 Main Stage: LVCC - L1 - Exhibit Hall West 3 - Track 4!

DawnSecurityLab (@dawnseclab) 's Twitter Profile Photo

The open-sourced version is finally here! github.com/jd-opensource/โ€ฆ We're still adding support for some corner cases, so keep an eye for future updates.

DawnSecurityLab (@dawnseclab) 's Twitter Profile Photo

New blog post: A journey in Android physical memory - writeup on exploiting recent GPU bug CVE-2025-21479 dawnslab.jd.com/android_gpu_atโ€ฆ

flanker017 (@flanker_hqd) 's Twitter Profile Photo

Years later itโ€™s still thrilled to be on #DEFCON stage. The presentation has been released here: media.defcon.org/DEF%20CON%2033โ€ฆ

Years later itโ€™s still thrilled to be on #DEFCON stage. The presentation has been released here: media.defcon.org/DEF%20CON%2033โ€ฆ