A big honor to coauthor with @abc_sup and Gulshan the very first blog from Android Red Team on analysis and exploitation of CVE-2023-20938 in Android Binder driver at androidoffsec.withgoogle.com… 🔥 The slide-deck presented at @offensive_con is available at androidoffsec.withgoogle.com…
2
37
87
14,760
Eugene Rodionov retweeted
My new article: "Kernel-hack-drill and a new approach to exploiting CVE-2024-50264 in the Linux kernel"⚡️ I tell a bug collision story and introduce my pet project kernel-hack-drill, which helped me to exploit the hard bug that received @PwnieAwards 2025 a13xp0p0v.github.io/2025/09/…
4
84
258
35,097
Eugene Rodionov retweeted
Slides for my talk at @h2hconference 2024: Diving into Linux kernel security 🤿 I described how to learn this complex area and knowingly configure the security parameters of your Linux-based system. And I showed my open-source tools for that purpose! a13xp0p0v.github.io/img/Alex…
5
80
258
27,589
Eugene Rodionov retweeted
Excited to share our latest post on memory safety! We're tackling spatial safety in our massive C++ codebase by hardening libc++ *by default*. It adds bounds checks to things like std::vector, preventing a fair bit of out-of-bounds vulnerabilities: security.googleblog.com/2024…
2
48
245
77,431
“Break into the world of vulnerability research... and become a zero-day hunter.” I have a new book with @nostarch! Behind the curtain of zero-day research, there are fundamental building blocks you can learn. In early access now and out in Spring 2025! nostarch.com/zero-day
21
135
615
41,012
Eugene Rodionov retweeted
Getting made fun of because you cover laptop webcam with a sticker? 😭 Here are materials from my talk about controlling ThinkPad X230 webcam LED over USB presented at POC by @POC_Crew 😎 Use these as a comeback 😁 Slides: docs.google.com/presentation… Code: github.com/xairy/lights-out
9
134
390
51,251
Eugene Rodionov retweeted
A while ago I've given a talk on how to build exceptional security research teams: github.com/rrbranco/Presenta… - I continue convinced that is all that is needed. The adage "Great people leave managers, not companies" continues to be true.
2
28
124
13,080
Eugene Rodionov retweeted
Project Zero blog: LLMs find 0days now! 👀 And: our fuzzer setup did *not* reproduce it! googleprojectzero.blogspot.c…
9
150
603
62,304
Eugene Rodionov retweeted
CVE-2024-9143 (openssl-library.org/news/sec…) was disclosed recently, which was found by OSS-Fuzz-Gen! This is a pretty proud example of our team showing the promise of leveraging LLMs enable more fuzzing coverage.
23
122
46,786
Eugene Rodionov retweeted
I've written a post on SELinux and some public bypasses for Android kernel exploitation. It's especially relevant for Samsung and Huawei devices due to their use of hypervisors. Check it out here: klecko.github.io/posts/selin…
10
127
411
37,717
Eugene Rodionov retweeted
Excited to give this talk 🔥🔥🔥
2
6
40
3,365
Eugene Rodionov retweeted
IDAlib is the first idiomatic Rust bindings library for @HexRaysSA IDA SDK, helping go beyond C/C++ or Python in RE automation. Huge thanks to @xorpse for making it happen! Binarly team ❤️ Rust 🙌 🛠️use idalib::idb::*; 🦀crates.io/crates/idalib
Our REsearch team is thrilled about the new IDA v9.0! #efiXplorer is fully compatible with v9.0 and still supports IDA v8.4🚀 🔬github.com/binarly-io/efiXpl… We are thrilled to announce IDAlib — idiomatic Rust bindings for the IDA SDK 🎉 Kudos to @xorpse! ⚙️github.com/binarly-io/idalib
1
25
78
11,128
Eugene Rodionov retweeted
💥PoC is now public! target = "https://{ip_address}/cgi/login.cgi" command = "touch /tmp/BRLY" libc = 0x76283000 # we try to guess gadget1 = 0x000D8874 # pop {r0, r1, r2, r3, fp, pc}; gadget2 = 0x001026D4 # mov r0, sp; blx r3; system = 0x0003C4D4 github.com/binarly-io/ToolsA…
🚨New! "CVE-2024-36435 Deep-Dive: The Year’s Most Critical BMC Security Flaw." 🔥Classic buffer overflow vulnerabilities resurface in BMCs, remotely opening the gates from the castle. 🏆Kudos to @AlexTereshkin for the initial discovery and disclosure! binarly.io/blog/cve-2024-364…
4
90
267
60,397
Eugene Rodionov retweeted
We have cleaned up the #LibAFL example fuzzers! This makes things easier to find and understand. Thanks to @rmalmain Take a look 👀👀 github.com/AFLplusplus/LibAF…
1
23
118
11,224
I’m super excited about this blogpost. The approach is so counterintuitive, and yet the results are so much better than anything else that we’ve tried for memory safety. We finally understand why. security.googleblog.com/2024…
6
73
269
54,768
Exciting story on collaboration between Google Android Offsec and ARM product security on proactively securing Mali GPU attack surface in Android and beyond. Among proactively identified and mitigated issues is CVE-2024-0153 in GPU firmware.
We teamed up with @Arm to boost GPU security on #Android!  Fuzzing, firmware analysis, and close collaboration led to key vulnerability discoveries and a stronger #Android ecosystem. Read more in our joint blog: security.googleblog.com/2024…
6
22
2,798
A big honor to coauthor with @abc_sup and Gulshan the very first blog from Android Red Team on analysis and exploitation of CVE-2023-20938 in Android Binder driver at androidoffsec.withgoogle.com… 🔥 The slide-deck presented at @offensive_con is available at androidoffsec.withgoogle.com…
2
37
87
14,760
Continuing the series on exploiting Android Binder with Binder internals blog androidoffsec.withgoogle.com… Deep dive into Binder driver by @abc_sup and Gulshan. We also release github.com/androidoffsec/lib… -- tiny lib featuring how to do IPC via Binder driver. Happy Binder hacking!
18
68
5,002
Eugene Rodionov retweeted
Slides and recording from my "SLUB Internals for Exploit Developers" talk at @LinuxSecSummit yesterday 🥳 Slides: docs.google.com/presentation… Slides PDF: static.sched.com/hosted_file… Recording: piped.video/WWQh4yAoXME?t=23158
Gonna be giving a talk "SLUB Internals for Exploit Developers" at @LinuxSecSummit next week. Plan to cover the basics one needs to know before writing exploits for slab bugs; slides coming along 😁 Also gonna stay around for @linuxplumbers. lsseu2024.sched.com/event/1e…
2
78
252
32,556