Natalie Silvanovich's Avatar

Natalie Silvanovich

@natashenka.bsky.social

Google Project Zero

591 Followers  |  183 Following  |  36 Posts  |  Joined: 13.12.2024  |  1.6007

Latest posts by natashenka.bsky.social on Bluesky

Integrators should update today!

16.10.2025 19:51 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Project Zero

Serious bugs often occur in third-party components integrated by other software. Ivan Fratric and I found this vulnerability in the Dolby Unified Decoder. It affects Android, iOS and Windows among other platforms, sometimes 0-click.

project-zero.issues.chromium.org/issues/42807...

16.10.2025 19:50 โ€” ๐Ÿ‘ 8    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Pointer leaks through pointer-keyed data structures Posted by Jann Horn, Google Project Zero Introduction Some time in 2024, during a Project Zero team discussion, we were talking about how...

Super cool potential ASLR leak involving dictionary hashes! googleprojectzero.blogspot.com/2025/09/poin...

26.09.2025 17:07 โ€” ๐Ÿ‘ 10    ๐Ÿ” 6    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

fseek and you shall lfind

15.09.2025 19:30 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Where is this? I must know!

22.08.2025 17:53 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

Zero-day developer and seller Exodus casually brags in a blog post about having found a WebKit zero-day and sold it for a year and a half.

blog.exodusintel.com/2025/08/04/o...

Clรฉment Lecigne and Benoรฎt Sevens of Google's Threat Analysis Group were the ones that reported it to Apple.

12.08.2025 19:46 โ€” ๐Ÿ‘ 21    ๐Ÿ” 9    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Post image

Left blue, right red #defcon

09.08.2025 00:59 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Sample image

08.08.2025 21:31 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

How to use your Defcon badge

08.08.2025 21:30 โ€” ๐Ÿ‘ 4    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

โ€œYou wouldnโ€™t happen to have anything that could help me understand todayโ€™s ever-changing threat landscape? Perhaps involving a bit of AI?โ€

06.08.2025 22:30 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Peak BH slide

06.08.2025 21:39 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Do you ever feel like maybe you should sign something, but arenโ€™t quite sure you can follow through?

02.08.2025 22:50 โ€” ๐Ÿ‘ 4    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Reporting Transparency As part of our 2025 Policy Trial , Project Zero will use this page to publicly track our Reporting Transparency effort. The trial commenced ...

We also posted our first Transparency Report

googleprojectzero.blogspot.com/p/reporting-...

29.07.2025 17:57 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

(๐Ÿ”ฅ๐Ÿ”ฅ๐Ÿ”ฅ)

29.07.2025 15:05 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Policy and Disclosure: 2025 Edition Posted by Tim Willis, Google Project Zero In 2021, we updated our vulnerability disclosure policy to the current "90+30" model. Our goals we...

While most vendors ship timely patches for vulnerabilities reported by Project Zero, they donโ€™t always reach users. Today, weโ€™re announcing Reporting Transparency, a new policy to encourage downstream fixes

googleprojectzero.blogspot.com/2025/07/repo...

29.07.2025 15:05 โ€” ๐Ÿ‘ 6    ๐Ÿ” 8    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 1
Video thumbnail

maybe there's still some good left in this world after all

28.07.2025 02:46 โ€” ๐Ÿ‘ 17407    ๐Ÿ” 4394    ๐Ÿ’ฌ 320    ๐Ÿ“Œ 551

The new Tamagotchi Switch game has rap battles where the Tamas rap about how they respect and enjoy each othersโ€™ unique differences

12.07.2025 02:09 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Inventor of the GIF, hearing about Notre Dame burning: oh no the jarjoyles

28.06.2025 14:02 โ€” ๐Ÿ‘ 5332    ๐Ÿ” 1219    ๐Ÿ’ฌ 72    ๐Ÿ“Œ 37

I accidentally closed a browser yesterday with 72 VERY IMPORTANT TABS that have been following me around like Jacob Marley and somehow my history is not recoverable. Reader, I let them go, and have lived to tell the tale.

20.06.2025 16:34 โ€” ๐Ÿ‘ 432    ๐Ÿ” 10    ๐Ÿ’ฌ 30    ๐Ÿ“Œ 4
Post image Post image Post image Post image

At least 3 miles of protesters along El Camino in Sunnyvale

14.06.2025 20:06 โ€” ๐Ÿ‘ 6    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

I Googled โ€œhow to shorten a chain,โ€ and got no good answers, so hereโ€™s the answer, hereโ€™s how you temporarily shorten it

14.06.2025 01:49 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
The case of the 500-mile email

www.ibiblio.org/harris/500mi...

You might be one of the lucky people to learn today about an emailing bug that turned out to be caused by the speed of light.

07.06.2025 13:18 โ€” ๐Ÿ‘ 43    ๐Ÿ” 16    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0

If thereโ€™s one thing Iโ€™ve learned, itโ€™s that tab completion is never โ€œjust broken todayโ€

06.06.2025 23:52 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Looks like I picked the wrong week to cut back on social media (Airplane movie meme)

Looks like I picked the wrong week to cut back on social media (Airplane movie meme)

05.06.2025 23:08 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

If $106,050.10 was the size of a quarter, it would fit in 424,200.4 fewer shipping containers than โ€ฆ

30.05.2025 04:23 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

The world never says hello back

28.05.2025 18:51 โ€” ๐Ÿ‘ 8    ๐Ÿ” 2    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Preview
The Windows Registry Adventure #8: Practical exploitation of hive memory corruption Posted by Mateusz Jurczyk, Google Project Zero In the previous blog post , we focused on the general security analysis of the registry a...

The final part of Mateuszโ€™s Windows Registry series is live! Contains all the hive memory corruption exploitation youโ€™ve been waiting for

googleprojectzero.blogspot.com/2025/05/the-...

28.05.2025 18:24 โ€” ๐Ÿ‘ 6    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿšจ CALLING ALL VULNERABILITY RESEARCHERS ๐Ÿšจ

The Junkyard is officially open!

This is our live, on-stage pwnathon dedicated to end-of-life systems. Submit your bugs!

Prizes range from $100 to $5,000 for categories like:
โ˜„๏ธ Most Impactful System
๐Ÿ‘พ Best Meme Target
๐Ÿ‘ Most Engaging Presentation

28.05.2025 14:14 โ€” ๐Ÿ‘ 20    ๐Ÿ” 18    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Movie you've watched more than 1000 times using gifs.

("Hard mode" no Star Wars, Star Trek, or LoTR)

26.04.2025 19:26 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Should be a Canada goose

26.04.2025 02:07 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@natashenka is following 20 prominent accounts