Reposted by KarstenNathan Hamiel @nhamiel.bsky.social · 19/05/2025The next battleground is in sight, and things are going to move fast. Half-baked tech pitched as transformational will be quickly adopted and thrown in front of children without any validation, but the demos will be amazing! 062
Reposted by KarstenDan Veditz @dveditz.bsky.social · 17/05/2025We just published @firefox.com updates to fix the exploits used at the Pwn2Own contest yesterday and today. Both contestants achieved RCE in our content process but did not escape the sandbox. blog.mozilla.org/security/202...blog.mozilla.orgFirefox Security Response to pwn2own 2025 – Mozilla Security BlogAt Mozilla, we consider security to be a paramount aspect of the web. This is why not only does Firefox have a long running bug bounty program but also mature ... 3248
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 13/05/2025It’s only Tuesday but the first night of Lobbycon has already started! 🍻 071
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 11/05/2025the takeover has begun.. trainings start tomorrow morning! 0122
Reposted by KarstenPhrack Zine @phrack.org · 28/04/2025RUMOURS are TRUE 🤷♀️ PHRACK will be releasing a SPECIAL #71.5 👉HARDCOVER👈 at www.offensivecon.org BERLIN ("The 𞅀-Day Edition"). Main #72 release THIS SUMMER at MULTIPLE conferences (main release at WHY2025). ❤️ 1125
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 25/04/20252025 agenda is out! www.offensivecon.org/agenda/2025.... 095
Reposted by Karstenmyrmepropagandist @futurebird.sauropods.win.ap.brid.gy · 20/04/2025To prevent deer from being hit by cars Finland has tried using reflective paint. (www.smithsonianmag.com/smart-news/a…) File this under "solutions to modern problems that summon the old gods." 5239781138
Reposted by Karstendmnk @dmnk.bsky.social · 18/04/2025Still adding people as they wash up here go.bsky.app/EhGFSVj 1121
Reposted by Karstenpinkflawd.bsky.social @pinkflawd.bsky.social · 01/04/2025The BlackHoodie training at OffensiveCon has a whole of 2 seats left, and we will have a special give-away with this edition :) blackhoodie.re/Offensivecon...blackhoodie.reBlackhoodie OffensiveCon 2025Hackers around the globe, listen, BlackHoodie will be at OffensiveCon this year :) For the very first time we’re offering a 1-day free training, for women, by women, at the most prestigious offensive ... 065
Reposted by KarstenPhrack Zine @phrack.org · 24/03/2025Don't forget, the CFP for the 40th anniversary issue of Phrack is open until June 15th 2025. You can be someone's favorite article in the future!! bsky.app/profile/phra... 0710
Reposted by Karstenpinkflawd.bsky.social @pinkflawd.bsky.social · 26/03/2025Save the date - @blackhoodie.bsky.social is partnering with @offensivecon.bsky.social this year to bring a BlackHoodie training to Berlin! Students will learn how to place compiler backdoors in innocent code. Mark your calendars for May 15th! Registration opens tomorrow, space is very limited ☺️ 077
Reposted by Karstenjduck @jduck.me · 25/03/2025Happy to share my slides from BOOTSTRAP25. Unfortunately the bug discussed is still not patched in Linux 6.14.0 despite it being reported explicitly. Slides are in markdown but there's a PDF in "releases" too github.com/jduck/bs25-s...github.comGitHub - jduck/bs25-slides: Slides from "Musing from Decades of Linux Kernel Security Research" at BOOTSTRAP25Slides from "Musing from Decades of Linux Kernel Security Research" at BOOTSTRAP25 - jduck/bs25-slides 1147
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 25/03/2025We are proud to announce our first keynote for Offensivecon 2025, Perri Adams! @perrib.us 0133
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 25/03/2025Our second keynote for Offensivecon 2025 will be Dino Dai Zovi! @ddz.bsky.social 093
Karsten @gr4yf0x.bsky.social · 25/03/2025Must be @argp.bsky.social and karl's article on the FreeBSD kernel allocator. The first one I worked really through, introduced me to kernel exploitation, and finally helped me with my first real exploit for FreeBSD-SA-19:02.fd. phrack.org/issues/66/8#...phrack.org.:: Phrack Magazine ::.Phrack staff website. 061
Karsten @gr4yf0x.bsky.social · 05/03/2025Good analysis by the syzkaller developer, how some of thr latest ITW vulns could have been found. 010
Karsten @gr4yf0x.bsky.social · 26/02/2025Pumpkin (@u1f383 on X) does cool work. Here is another cool read about an interesting race condition involving signal handling u1f383.github.io/linux/2025/0...u1f383.github.ioLinux Kernel Some Vsock Vulnerabilities AnalysisAfter CVE-2024-50264, the Theori team reported five more issues in the Linux kernel vsock subsystem, and syzbot recently discovered two additional issues. I believe these provide valuable insights int... 044
Karsten @gr4yf0x.bsky.social · 17/02/2025Really great read by @h0mbre (on X) about his journey to exploit a Linux n-day on kCTF. Not only the exploit but the process to understand the bug including own failures, e.g. deal with CONFIG_DEBUG_LIST, is full of insights. h0mbre.github.io/Patch_Gappin...h0mbre.github.ioPatch-Gapping the Google Container-Optimized OS for $0Background I’m trying to really focus this year on developing technically in a few ways. Part of that is reviewing kCTF entries. This helps me get a sense of what subsystems are producing the most bug... 021
Reposted by KarstenPhrack Zine @phrack.org · 15/02/2025Hackers rejoice! We are releasing the Phrack 71 PDF for you today! Don't forget this year is Phrack's 40th anniversary release! Send in your contribution and be part of this historical issue! The CFP is still open, you can find it and the PDF link at phrack.orgphrack.org.:: Phrack Magazine ::.Phrack staff website. 26232
Reposted by KarstenOffensiveCon @offensivecon.bsky.social · 21/01/2025To all our Bluesky friends, feel free to follow us here as we will be posting regular updates as the conference gets closer. See you in May! 083
Karsten @gr4yf0x.bsky.social · 01/01/2025As of today I'm not longer with CrowdStrike. Looking forward to new challenges in VR :) 150
Karsten @gr4yf0x.bsky.social · 14/12/2024Can recommend Satoshi's training as well, rarely had a training that was such hands-on. 011
Reposted by Karstenbuherator @buherator.bsky.social · 03/12/2024[RSS] Linux Kernel: TOCTOU in Exec System github.com -> Original-> 021
Karsten @gr4yf0x.bsky.social · 26/11/2024Creative vuln research by Eloi (@elvanderb on X) on XNU logic bugs t.co/Z3ktOkj6Git.cohttps://www.synacktiv.com/sites/default/files/2024-11/finding_and_exploiting_an_old_xnu_logic_bug.pdf 031
Karsten @gr4yf0x.bsky.social · 24/11/2024Cool idea. Artists under the Taylor Swift level usually get their money through album sales and merch, maybe concerts only. 000
Reposted by Karstenbuherator @buherator.bsky.social · 24/11/2024I really like the idea of Bandcamp Gift Cards! Get your friends and family hooked on supporting independent artists/small labels! bandcamp.com/gift_cards Original-> 021
Karsten @gr4yf0x.bsky.social · 22/11/2024Interesting paper by Erin Avllazagaj to automatically find Linux kernel objects being potentially useful for privilege escalation, tool is called SCAVY. www.usenix.org/system/files...usenix.org 051
Reposted by Karstendmnk @dmnk.bsky.social · 15/11/2024Slides for my @ekoparty talk "Advanced Fuzzing With LibAFL" - > docs.google.com/presentation...docs.google.comAdvanced Fuzzing With LibAFL @ Ekoparty 2024Advanced Fuzzing With LibAFL Dominik Maier Ekoparty 2024-11-15 1 04420
Reposted by KarstenPhil Stokes ⫍🐠⫎ @philofishal.bsky.social · 17/11/2024All the recordings from #r2con2024. 🤩 🙌 radare.org/con/2024/radare.org 0117
Karsten @gr4yf0x.bsky.social · 16/11/2024Custom Linux kernel fuzzing with libFuzzer by @r00tkitsmm.bsky.social r00tkitsmm.github.io/fuzzing/2024...r00tkitsmm.github.ioStructure-Aware linux kernel Fuzzing with libFuzzerHi everyone! I’m really happy to tell you about my experimenting adventure today. I decided to experiment with KCOV and see how I can hook it into libfuzzer and boot the kernel without spending too mu... 052
Karsten @gr4yf0x.bsky.social · 16/11/2024Let's give this network a second chance and see if critical mass is hit. 010