Max Bazaliy (@mbazaliy) 's Twitter Profile
Max Bazaliy

@mbazaliy

Offensive Security | AI

ID: 310753146

calendar_today04-06-2011 08:55:42

1,1K Tweet

4,4K Followers

435 Following

Gal Z (@0xgalz) 's Twitter Profile Photo

Virtuailor now supports AArch64! If you have a firmware or any other C++ binary compiled to AArch64, Virtuailor will now be able to reconstruct the vtables, add Xrefs to virtual calls and make the reversing process a little bit easier. github.com/0xgalz/Virtuai…

axi0mX@infosec.exchange (@axi0mx) 's Twitter Profile Photo

EPIC JAILBREAK: Introducing checkm8 (read "checkmate"), a permanent unpatchable bootrom exploit for hundreds of millions of iOS devices. Most generations of iPhones and iPads are vulnerable: from iPhone 4S (A5 chip) to iPhone 8 and iPhone X (A11 chip). github.com/axi0mX/ipwndfu

grsecurity (@grsecurity) 's Twitter Profile Photo

Nice vuln: git.kernel.org/pub/scm/linux/… ARM64 PAN support (both HW and SW) broken for over 4 years, since introduction in 4.3. Bypass in HW case, memory corruption in the SW case

Brandon Azad (@_bazad) 's Twitter Profile Photo

I've compiled a summary of every original public iOS kernel exploit from app context since iOS 10, describing the high-level exploit flow to get stable kernel read/write. The trends of how these exploits have evolved over time are quite interesting: googleprojectzero.blogspot.com/2020/06/a-surv…

Brandon Azad (@_bazad) 's Twitter Profile Photo

Here are the slides from my BlackHat talk "iOS Kernel PAC, One Year Later", in which I consider how kernel PAC CFI has changed since its introduction in iOS 12 and examine 5 ways to bypass it in iOS 13: bazad.github.io/presentations/…

F4b (@0xf4b) 's Twitter Profile Photo

Just published a blogpost about CVE-2020-27950, one of the three iOS vulnerabilities exploited in the wild and fixed in iOS 14.2

Hex-Rays SA (@hexrayssa) 's Twitter Profile Photo

IDA Pro for arm64 is coming! We have ported all of IDA to run natively on Apple Silicon, and it will be available in IDA 7.6. Initial analysis shows that the hype is real 🤩: hex-rays.com/blog/ida-pro-o… #AppleSilicon #M1 #macmini #BigSur

IDA Pro for arm64 is coming! We have ported all of IDA to run natively on Apple Silicon, and it will be available in IDA 7.6. Initial analysis shows that the hype is real 🤩: hex-rays.com/blog/ida-pro-o… #AppleSilicon #M1 #macmini #BigSur
Alex Matrosov (@matrosov) 's Twitter Profile Photo

In April, I left Nvidia, and to be honest, it was one of the most challenging decisions to make. It was an great ride, I created Offensive Research there with a long road of… I’m proud of what we achieved together as a team! Kudos Max Bazaliy Adam 'pi3' Zabrocki Alex Tereshkin NVIDIA PSIRT

Samuel Groß (@5aelo) 's Twitter Profile Photo

Small blog post on how to run iOS code natively on Arm-based Macs. Enjoy :) googleprojectzero.blogspot.com/2021/05/fuzzin…

Depressed NSBeep(); 🇺🇦 (@krivoblotsky) 's Twitter Profile Photo

At 5 am russia has massively attacked Ukraine. Kyiv where I’m now, other cities where I’ve been to, explosions have been heard near my parents house. But we are strong nation, much stronger than those invaders. Ukraine will resist 🇺🇦

DOU (@doucommunity) 's Twitter Profile Photo

Україні потрібна допомога кіберспільноти. Що робити dou.ua/lenta/news/cyb…

Max Bazaliy (@mbazaliy) 's Twitter Profile Photo

We'll be presenting our latest research at DEF CON 33, focused on fuzzing automation using AI agents. Orion can identify fuzzing targets, generate harnesses, reproduce crashes, and suggest patches. defcon.org/html/defcon-33…