Sign in

Natalie Silvanovich

@natashenka.bsky.social
759 followers 185 following 81 posts

Google Project Zero

PostsRepliesMedia
Natalie Silvanovich @natashenka.bsky.social · 21/09/2026
In July, Microsoft fixed CVE-2026-50343, a Windows privilege escalation bug reported by Calif and 9 others, dubbed “Dark Elevator”. But was it really fixed? projectzero.google/2026/09/wind...
projectzero.google
Windows Exploitation Techniques: Dangling COM Object Registrations
This short blog post is about abusing a privilege escalation bug that Microsoft recently fixed in...
032
Natalie Silvanovich @natashenka.bsky.social · 08/09/2026
Today, Project Zero is releasing MAccConc, a tool by Jann Horn that enables deterministic testing of race conditions on Linux. It can be used for fuzzing, ad-hoc exploration, regression tests and more! projectzero.google/2026/09/macc...
projectzero.google
Testing race conditions with memory access tracing and stack-based delay injection
Many security bugs are race conditions, where multi-threaded execution has to occur with the righ...
1101
Reposted by Natalie Silvanovich
Ian Coldwater 🧊🚫 @lookitup.baby · 02/09/2026
Ask not for whom the doom scrolls. It scrolls for thee
223716
Natalie Silvanovich @natashenka.bsky.social · 25/08/2026
For all the uncertainty they cause, LLMs are pretty terrible at creating slides of question marks doing the conga
021
Natalie Silvanovich @natashenka.bsky.social · 24/08/2026
Weekend project
010
Natalie Silvanovich @natashenka.bsky.social · 23/08/2026
Project Zero is hiring! goo.gle/3UMXQIZ Please share with anyone you think would be great for the role.
goo.gle
Senior Security Engineer, Security Research
Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for a...
099
Natalie Silvanovich @natashenka.bsky.social · 03/08/2026
The passage of time is relentless
242
Natalie Silvanovich @natashenka.bsky.social · 23/07/2026
You are the manager of a vulnerability research team. You are easily distracted and often late for meetings. You forget important emails.
060
Natalie Silvanovich @natashenka.bsky.social · 21/07/2026
When you join the Stonecutters, you get the real H264 conformance test vectors, that really test all the features
020
Natalie Silvanovich @natashenka.bsky.social · 13/07/2026
What if Python smelled the flowers? Read a book? Did anything but complain about consistent use of tabs and spaces?
030
Natalie Silvanovich @natashenka.bsky.social · 02/07/2026
New variation on an old theme: reporting a low severity bug because AI *fixates* on it to the exclusion of other bugs
060
Natalie Silvanovich @natashenka.bsky.social · 19/06/2026
Some of us don’t snitch, alright? www.calparks.org/press/califo...
calparks.org
Californians Urged to Observe and Report Monarch Butterfly Sightings
020
Natalie Silvanovich @natashenka.bsky.social · 28/05/2026
There’s ‘shrinkwrap’ on this Tamagotchi … sticker
010
Natalie Silvanovich @natashenka.bsky.social · 21/05/2026
And the Owl said, “If you want to find the maintainer, go to the north side of the pond when the moon is out. Turn yourself around three times, then look into the water to see them.”
030
Reposted by Natalie Silvanovich
OffensiveCon @offensivecon.bsky.social · 16/05/2026
A 0-Click Exploit Chain For The Pixel 10 by @natashenka.bsky.social and Seth Jenkins
081
Natalie Silvanovich @natashenka.bsky.social · 13/05/2026
Seth Jenkins updated our 0-click exploit chain to work on a Pixel 10 with an eye-popping driver bug! We’ll be presenting this work Saturday @offensivecon.bsky.social projectzero.google/2026/05/pixe...
projectzero.google
A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens
We recently published an exploit chain for the Google Pixel 9 that demonstrated it was possible t...
095
Natalie Silvanovich @natashenka.bsky.social · 30/04/2026
Big changes to Android and Chrome VRP: - focus on high-impact, reproducible bugs with low/no reward for lower impact - big prizes for full chains with some annual limits - PoCs required It’s the end of an era, but the start of a new one. bughunters.google.com/blog/evolvin...
bughunters.google.com
Blog: Evolving the Android & Chrome VRPs for the AI Era
We are announcing changes to the Chrome & Android Vulnerability Reward Programs (VRP) which take effect immediately and are focused on adjusting our reward amounts and bonuses to reflect the types of ...
074
Natalie Silvanovich @natashenka.bsky.social · 18/04/2026
There’s a little piece of my heart that beats just for Spanify groups.google.com/a/chromium.o...
groups.google.com
Introducing Spanification
030
Natalie Silvanovich @natashenka.bsky.social · 13/04/2026
Amazing work by Meta implementing fast and robust WebRTC updates! “We can’t push updates because …” can often be solved with investment and innovative engineering engineering.fb.com/2026/04/09/d...
engineering.fb.com
Escaping the Fork: How Meta Modernized WebRTC Across 50+ Use Cases
At Meta, WebRTC powers real-time audio and video across various platforms. But forking a large open-source project like WebRTC within our monorepo presents unique challenges – over time, an interna…
120
Natalie Silvanovich @natashenka.bsky.social · 31/03/2026
Just put a reminder in my calendar for November 1, 2026 to check whether we still have bugs
150
Reposted by Natalie Silvanovich
johndmcmaster.bsky.social @johndmcmaster.bsky.social · 09/03/2026
Mountain View Reverse Engineering (mtvre) meetup on Wed! 7:00 pm at Wagon Wheel BBQ. Talks: - @tubetime.bsky.social on "HP 16717 PCB Reverse Engineering" (40 min) - @natashenka.bsky.social on "0-click Android exploits" (25 min)
163
Natalie Silvanovich @natashenka.bsky.social · 05/03/2026
Ivan Fratric shares some tips and tricks for grammar fuzzing projectzero.google/2026/03/muta...
projectzero.google
On the Effectiveness of Mutational Grammar Fuzzing
Mutational grammar fuzzing is a fuzzing technique in which the fuzzer uses a predefined grammar t...
084
Natalie Silvanovich @natashenka.bsky.social · 04/03/2026
020
Natalie Silvanovich @natashenka.bsky.social · 26/02/2026
In the final part of his blog series, @tiraniddo.dev tells the story of how a bug was introduced into a Windows API. Code re-writes can improve security, but it’s important not to forget the security properties the code needs to enforce in the process. projectzero.google/2026/02/gphf...
projectzero.google
A Deep Dive into the GetProcessHandleFromHwnd API - Project Zero
In my previous blog post I mentioned the GetProcessHandleFromHwnd API. This was an API I didn’t know existed until I found a publicly disclosed UAC bypass us...
064
Natalie Silvanovich @natashenka.bsky.social · 12/02/2026
Part 2 of @tiraniddo.dev’s Windows Administrator Protection journey is here! projectzero.google/2026/02/wind...
projectzero.google
Bypassing Administrator Protection by Abusing UI Access - Project Zero
In my last blog post I introduced the new Windows feature, Administrator Protection and how it aimed to create a secure boundary for UAC where one didn’t exi...
165
Natalie Silvanovich @natashenka.bsky.social · 06/02/2026
The remarkable true story of how Flash was deprecated medium.com/@aglaforge/w...
medium.com
What Really Killed Flash Player: A Six-Year Campaign of Deliberate Platform Work
This is what it actually took. From the person who architected and drove Chrome’s Flash deprecation from proposal to the final removal in…
163
Natalie Silvanovich @natashenka.bsky.social · 30/01/2026
Our intrepid 20%-er Dillon Franke exploited a vulnerability in CoreAudio. See his process for gaining privilege escalation on a Mac: projectzero.google/2026/01/soun...
projectzero.google
Breaking the Sound Barrier, Part II: Exploiting CVE-2024-54529 - Project Zero
In the first part of this series, I detailed my journey into macOS security research, which led to the discovery of a type confusion vulnerability (CVE-2024-...
081
Natalie Silvanovich @natashenka.bsky.social · 26/01/2026
No security feature is perfect. @tiraniddo.dev reviewed Windows’ new Administrator Protection and found several bypasses. projectzero.google/2026/26/wind...
projectzero.google
Bypassing Windows Administrator Protection - Project Zero
A headline feature introduced in the latest release of Windows 11, 25H2 is Administrator Protection. The goal of this feature is to replace User Account Cont...
065
Natalie Silvanovich @natashenka.bsky.social · 15/01/2026
Some extra 0-click fun! Seth Jenkins and I trying to figure out why our exploit isn’t working, when it has, in fact, already started taking and exfiltrating photos
090
Natalie Silvanovich @natashenka.bsky.social · 15/01/2026
Today, Project Zero released a 0-click exploit chain for the Pixel 9. While it targets the Pixel, the 0-click bug and exploit techniques we used apply to most other Android devices. projectzero.google/2026/01/pixe...
projectzero.google
A 0-click exploit chain for the Pixel 9 Part 1: Decoding Dolby - Project Zero
Over the past few years, several AI-powered features have been added to mobile phones that allow users to better search and understand their messages. One ef...
15733
Natalie Silvanovich @natashenka.bsky.social · 31/12/2025
But wait, I haven’t read all the “Best Books of 2024” yet
061
Natalie Silvanovich @natashenka.bsky.social · 19/12/2025
Thank you, we love the design 😍
040
Natalie Silvanovich @natashenka.bsky.social · 17/12/2025
We launched a redesigned Project Zero website today at projectzero.google ! To mark the occasion, we released some older posts that never quite made it out of drafts. Enjoy!
projectzero.google
Google Project Zero
Make zeroday hard
0184
Natalie Silvanovich @natashenka.bsky.social · 12/12/2025
An analysis of a recent 0-click exploit targeting Samsung devices: googleprojectzero.blogspot.com/2025/12/a-lo...
googleprojectzero.blogspot.com
A look at an Android ITW DNG exploit
Posted by Benoît Sevens, Google Threat Intelligence Group Introduction Between July 2024 and February 2025, 6 suspicious image files were ...
184
Natalie Silvanovich @natashenka.bsky.social · 06/12/2025
Crime show: “We know the victim died at night because we found beef in his stomach.” Me, shoving a left-over burger in my face at 7am: 🫢
250
Natalie Silvanovich @natashenka.bsky.social · 05/12/2025
Your phone’s more likely to hit the ASLR state you need if you put a lucky dragon on it
Stuffed dragon on phone
040
Natalie Silvanovich @natashenka.bsky.social · 21/11/2025
I love how my city sends me text message alerts when there’s the chance to see a sinkhole
000
Natalie Silvanovich @natashenka.bsky.social · 03/11/2025
New Blog Post: Seth Jenkins broke kASLR by doing … nothing 😩 googleprojectzero.blogspot.com/2025/11/defe...
googleprojectzero.blogspot.com
Defeating KASLR by Doing Nothing at All
Posted by Seth Jenkins, Project Zero Introduction I've recently been researching Pixel kernel exploitation and as part of this research I ...
0115
Natalie Silvanovich @natashenka.bsky.social · 16/10/2025
Serious bugs often occur in third-party components integrated by other software. Ivan Fratric and I found this vulnerability in the Dolby Unified Decoder. It affects Android, iOS and Windows among other platforms, sometimes 0-click. project-zero.issues.chromium.org/issues/42807...
project-zero.issues.chromium.org
Project Zero
1101
Natalie Silvanovich @natashenka.bsky.social · 26/09/2025
Super cool potential ASLR leak involving dictionary hashes! googleprojectzero.blogspot.com/2025/09/poin...
googleprojectzero.blogspot.com
Pointer leaks through pointer-keyed data structures
Posted by Jann Horn, Google Project Zero Introduction Some time in 2024, during a Project Zero team discussion, we were talking about how...
0116
Natalie Silvanovich @natashenka.bsky.social · 15/09/2025
fseek and you shall lfind
000
Reposted by Natalie Silvanovich
Lorenzo Franceschi-Bicchierai @lorenzofb.bsky.social · 12/08/2025
Zero-day developer and seller Exodus casually brags in a blog post about having found a WebKit zero-day and sold it for a year and a half. blog.exodusintel.com/2025/08/04/o... Clément Lecigne and Benoît Sevens of Google's Threat Analysis Group were the ones that reported it to Apple.
1219
Natalie Silvanovich @natashenka.bsky.social · 09/08/2025
Left blue, right red #defcon
030
Natalie Silvanovich @natashenka.bsky.social · 08/08/2025
How to use your Defcon badge
141
Natalie Silvanovich @natashenka.bsky.social · 06/08/2025
“You wouldn’t happen to have anything that could help me understand today’s ever-changing threat landscape? Perhaps involving a bit of AI?”
031
Natalie Silvanovich @natashenka.bsky.social · 06/08/2025
Peak BH slide
010
Natalie Silvanovich @natashenka.bsky.social · 02/08/2025
Do you ever feel like maybe you should sign something, but aren’t quite sure you can follow through?
040
Natalie Silvanovich @natashenka.bsky.social · 29/07/2025
We also posted our first Transparency Report googleprojectzero.blogspot.com/p/reporting-...
googleprojectzero.blogspot.com
Reporting Transparency
As part of our 2025 Policy Trial , Project Zero will use this page to publicly track our Reporting Transparency effort. The trial commenced ...
031
Natalie Silvanovich @natashenka.bsky.social · 29/07/2025
While most vendors ship timely patches for vulnerabilities reported by Project Zero, they don’t always reach users. Today, we’re announcing Reporting Transparency, a new policy to encourage downstream fixes googleprojectzero.blogspot.com/2025/07/repo...
googleprojectzero.blogspot.com
Policy and Disclosure: 2025 Edition
Posted by Tim Willis, Google Project Zero In 2021, we updated our vulnerability disclosure policy to the current "90+30" model. Our goals we...
168
Reposted by Natalie Silvanovich
Microplastics Sommelier @leastactionhero.bsky.social · 28/07/2025
maybe there's still some good left in this world after all
309171904335