r3tr074 (@r3tr074) 's Twitter Profile
r3tr074

@r3tr074

Security research | harddisk.com.br founder | CTF pwn/rev @eltctfbr + @r3kapig | yes, I'm the browser guy

ID: 1460802457941032970

linkhttp://phrack.org/author_r3tr074.html calendar_today17-11-2021 03:01:28

288 Tweet

1,1K Followers

542 Following

xvonfers (@xvonfers) 's Twitter Profile Photo

[40068627]V8 SBX due to tiering_budget_array being referenced through a raw pointer issues.chromium.org/issues/40068627 [40068691]Crash in Builtins_NewGenericJSToWasmWrapper issues.chromium.org/issues/40068691 [41482162 - [email protected]]V8 SBX abusing Liftoff assembly issues.chromium.org/issues/41482162

r3tr074 (@r3tr074) 's Twitter Profile Photo

Just dropped my exploit with new cross-{cache,bucket} techniques (I love the creativity of kernel exploits, it gave me a very cool experience with SLAB allocators), the coolest part for me is the exploit, basically almost any memory corruption in Blink/Chrome can achieve RCE :D

exploits.club (@exploitsclub) 's Twitter Profile Photo

It's exploits.club day ‼️ A novel exploit technique from [email protected] Boris Larin and the Kaspersky team featured twice for TWO different ITW 0-days Trend Zero Day Initiative and Cody Gallagher partner for a post about popping VirtualBox + Jobs and more 👇 blog.exploits.club/exploits-club-…

Phrack Zine (@phrack) 's Twitter Profile Photo

The time has come, and with it your reading material for the week. Phrack #71 is officially released ONLINE! Let us know what you think! phrack.org/issues/71/1.ht…

The time has come, and with it your reading material for the week.

Phrack #71 is officially released ONLINE! Let us know what you think!

phrack.org/issues/71/1.ht…
r3tr074 (@r3tr074) 's Twitter Profile Photo

The Phrack Zine #71 is finally out!! How an image decoding bug can be turned into a full RCE? Easy, by abusing PartitionAlloc's internals and creating new techniques to exploit basically any memory corruption within Chromium! Let's alloc more exploits :P phrack.org/issues/71/10.h…

r3tr074 (@r3tr074) 's Twitter Profile Photo

What should I do after finding null-deref's in the renderer process, the GPU process and the main process??? Why do ppl nullify ptrs? Just use them, it doesn't matter if it's already been freed, just use it!!!

0xTen (@_0xten) 's Twitter Profile Photo

Earlier this year, I used a 1day to exploit the kernelCTF VRP LTS instance. I then used the same bug to write a universal exploit that worked against up-to-date mainstream distros for approximately 2 months. osec.io/blog/2024-11-2…

Earlier this year, I used a 1day to exploit the kernelCTF VRP LTS instance. I then used the same bug to write a universal exploit that worked against up-to-date mainstream distros for approximately 2 months.

osec.io/blog/2024-11-2…
r3tr074 (@r3tr074) 's Twitter Profile Photo

Is there anything useful to do with an OOB vector in the GPU process? Some custom chromium that disables "safe libc++" or some new trick?

Is there anything useful to do with an OOB vector in the GPU process? Some custom chromium that disables "safe libc++" or some new trick?
davs彡 (@mdavas_) 's Twitter Profile Photo

uma vez sonhei que tudo no mundo tinha o seu nome coelho tinha o seu nome xícara tinha o seu nome teleférico tinha o seu nome

celesian (@c3l3si4n) 's Twitter Profile Photo

My article "High-Performance Network Scanning with AF_XDP" has been released on the 72th issue of Phrack. phrack.org/issues/72/3_md…

My article "High-Performance Network Scanning with AF_XDP" has been released on the 72th issue of Phrack.
 phrack.org/issues/72/3_md…