KT (@koczkatamas) 's Twitter Profile
KT

@koczkatamas

Security Engineer @ Google (personal account, opinions are my own!). ex-Tresorit. Ex-captain of @SpamAndHex CTF team.

ID: 38256727

linkhttps://kt.gy calendar_today06-05-2009 19:32:30

3,3K Tweet

4,4K Followers

952 Following

Andy Nguyen (@theflow0) 's Twitter Profile Photo

Last year I discovered multiple bugs in virtio-net for VirtualBox (CVE-2023-22098, CVE-2023-22099, CVE-2023-22100) and wrote a 100% reliable VM escape using an out-of-bounds write (with ASLR defeat). Published the exploit code: github.com/google/securit…

Andrey Konovalov (@andreyknvl) 's Twitter Profile Photo

Looks like newest Ubuntu restricted getting capabilities within user namespaces for all but a few whitelisted applications (e.g., Chrome) 🥳 End of days for netfilter exploits is close? 😃 openwall.com/lists/oss-secu… discourse.ubuntu.com/t/ubuntu-24-04…

Looks like newest Ubuntu restricted getting capabilities within user namespaces for all but a few whitelisted applications (e.g., Chrome) 🥳

End of days for netfilter exploits is close? 😃

openwall.com/lists/oss-secu…
discourse.ubuntu.com/t/ubuntu-24-04…
Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

Curious to learn more about ESCAL8, Google's annual security conference? See our blog post to find out what this event holds in store for seasoned bug hunters, aspiring security professionals, and experienced CTF players. bughunters.google.com/blog/484622746…

Dmitry Vyukov (@dvyukov) 's Twitter Profile Photo

Excited to share bug detection tool we've been working on w/ Marco Elver: github.com/google/gwpsan It samples unmodified prod binaries with ~1% overhead, can be turned off completely. Detects data races, use-after-return, uninits. Can do more e.g. UAF/OOB in syscalls. Cool tech ...

KT (@koczkatamas) 's Twitter Profile Photo

Google CTF 2024 is here soon! Come and enjoy our twisted challenges! 21 June, 18:00 UTC, put into your calendars! security.googleblog.com/2024/06/time-t…

Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

Big news for bug hunters! We've added a new payment option 💰: select Bugcrowd in your profile on bughunters.google.com and profit from ⚡-fast and more flexible payouts. See our blog for details: bughunters.google.com/blog/648393685…

Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

Google CTF is just around the corner, starting June 21 at 6:00 PM UTC! Give your best and earn all the flags to qualify for Hackceler8 2024 in Málaga. Register at goo.gle/ctf. ¡Vamos! For details, see our blog post: bughunters.google.com/blog/543069752…

Google CTF is just around the corner, starting June 21 at 6:00 PM UTC! Give your best and earn all the flags to qualify for Hackceler8 2024 in Málaga. Register at goo.gle/ctf.
¡Vamos! 

For details, see our blog post: bughunters.google.com/blog/543069752…
Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

📢 Chrome VRP reward updates! 💰 Bigger payouts (up to 5x higher, $250,000+) and clearer guidelines, all designed to incentivize high-quality Chrome security research. Let's work together to make Chrome even safer! 🔐 bughunters.google.com/blog/530204429…

Binary Gecko (@binary_gecko) 's Twitter Profile Photo

Check out our latest post about a vulnerability we disclosed to the Kernel Security Team - “Race conditions in Linux Kernel perf events” binarygecko.com/race-condition…

Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

[Hackceler8 '24, 9 days to go] Mew and friends have disappeared! And what’s more – the lands of Hackceler8 have been completely taken over by new foes, stronger than ever before. Your favorite friends are trapped in limbo. Who can save the day?

[Hackceler8 '24, 9 days to go] 

Mew and friends have disappeared! And what’s more – the lands of Hackceler8 have been completely taken over by new foes, stronger than ever before. Your favorite friends are trapped in limbo. 

Who can save the day?
Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

We are happy to announce the launch of the Google Cloud Vulnerability Reward Program! The Cloud VRP is specifically dedicated to products and services that are part of Google Cloud. ☁️ 🐞 🤑 cloud.google.com/blog/products/…

Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

[Hackceler8 '24] REMINDER for all CTF enthusiasts: Tune in to our live stream for the finals of Hackceler8, kicking off in 30 minutes (pre-game commentary from 14:15, finals from 14:30 CET). youtube.com/live/LEm1UEjIW…

V4bel (@v4bel) 's Twitter Profile Photo

Google kernelCTF LTS/COS 0-day WIN! Successfully exploited an extremely complex race condition 0-day vuln on two instances without using namespaces 🎉 work with qwerty

Google kernelCTF LTS/COS 0-day WIN!

Successfully exploited an extremely complex race condition 0-day vuln on two instances without using namespaces 🎉

work with <a href="/_qwerty_po/">qwerty</a>