
Grapl Inc.
@graplsec
Official account for Grapl - the open source graph based #DetectionAndResponse platform.
github.com/grapl-security…
ID: 1194705779053363201
http://graplsecurity.com 13-11-2019 19:59:28
77 Tweet
1,1K Takipçi
71 Takip Edilen





So excited to finally release my blog post- Kernel Pwning with eBPF: a Love Story. I cover eBPF, the verifier, debugging, exploitation, mitigations and other cool findings! I do root cause analysis and exploit CVE-2021-3490 for LPE with PoC included. graplsecurity.com/post/kernel-pw…

Linux eBPF bug gets root privileges on Ubuntu - Exploit released - Ionut Ilascu bleepingcomputer.com/news/security/…



This is an outstanding work. I've had the privilege to see Pawel Wieczorkiewicz work thru this research. The post has many references, excellent background info and offers a methodology that can be used for other experiments too (besides the cool finding!)

#io_uring is a new #Linux syscall interface, designed for performance. It redefines how apps interact with the kernel, even inside a #sandbox. In our blog, we cover the attack surface, find a vuln, and use advanced kernel exploit techniques to gain #root graplsecurity.com/post/iou-ring-…

Thrilled to share my new blog post: Put an io_uring on it: Exploiting the Linux kernel. Follow me while I learn a new kernel subsystem + its attack surface, find an 0day, build an exploit, + come up with some new tricks. I go deep and demystify the process graplsecurity.com/post/iou-ring-…

Researcher uses Dirty Pipe exploit to fully root a Pixel 6 Pro and Samsung S22 arstechnica.com/information-te… by @[email protected] -- Follow me there

Put an io_uring on it: Exploiting the Linux Kernel via Grapl Inc. buff.ly/3CY89wT #linux




Firecracker is a microVM manager in #Rust that powers #AWS services like Lambda and Fargate. It's also one of the key components of Grapl's multi-tenant isolation. A critical dependency deserves some red teaming - here's how we attacked AWS' Firecracker. graplsecurity.com/post/attacking…


📖 CloudSecList Issue 154 just got released, w/ content from falcosecurity Lyft Engineering @istiomesh Rory McCune Grapl Inc. @LightspinTech and more! cloudseclist.com/issues/issue-1…
