Slava Moskvin | Path Cybersec (@slava_moskvin_) 's Twitter Profile
Slava Moskvin | Path Cybersec

@slava_moskvin_

Security researcher

ID: 800829554

linkhttps://slavamoskvin.com/ calendar_today03-09-2012 17:21:31

203 Tweet

828 Followers

264 Following

xvonfers (@xvonfers) 's Twitter Profile Photo

(ZDI-CAN-26505)[ksmbd] Attacker send malformed smb2 negotiate request -> smbd return error response -> attacker can send smb2 session setup even thought conn->preauth_info is not allocated(NPD) github.com/torvalds/linux… Reported by Viacheslav Moskvin(Slava Moskvin | Path Cybersec)

Slava Moskvin | Path Cybersec (@slava_moskvin_) 's Twitter Profile Photo

My network fuzzer net-shredder found a remote NULL pointer dereference in the Linux kernel's SMB server (ksmbd) slavamoskvin.com/zdi-25-310-rem…

Slava Moskvin | Path Cybersec (@slava_moskvin_) 's Twitter Profile Photo

Proof that AI can now find 0-days even w/o agents or advanced tooling. Also pretty cool: o3 managed to find the known vulnerability only 8 out of 100 times, and the 0-day just 1 out of 100. I hadn’t realized it might take that many tries to get a useful result from AI.

POC_Crew πŸ‘¨β€πŸ‘©β€πŸ‘¦β€πŸ‘¦ (@poc_crew) 's Twitter Profile Photo

πŸ› οΈ [POC2025] TRAINING MacOS/iOS Kernel User Fuzzing Training by Meysam Firouzi (.) πŸ“… Nov 10-12 (3 days) πŸ“ Four Seasons Hotel Seoul, South Korea πŸ”— More info powerofcommunity.net/#training #POC2025

πŸ› οΈ [POC2025] TRAINING

MacOS/iOS Kernel User Fuzzing Training
by Meysam Firouzi (<a href="/R00tkitSMM/">.</a>)

πŸ“… Nov 10-12 (3 days)
πŸ“ Four Seasons Hotel Seoul, South Korea

πŸ”— More info powerofcommunity.net/#training
#POC2025