's Avatar

@droner.bsky.social

researcher. exploit dev. pdx. hacking @ atredis https://dronesec.net/

122 Followers  |  190 Following  |  23 Posts  |  Joined: 02.10.2023  |  2.1644

Latest posts by droner.bsky.social on Bluesky

Post image

Microsoft has discovered a side-channel attack (Whisper Leak) on the network communications between AI chatbots and their backend LLMs

www.microsoft.com/en-us/securi...

09.11.2025 14:38 β€” πŸ‘ 9    πŸ” 13    πŸ’¬ 0    πŸ“Œ 1
Moorty the MOO mascot holding a 386 CPU

Moorty the MOO mascot holding a 386 CPU

I've officially released my real-mode emulator CPU test suite for the Intel 80386.

github.com/singlestepte...

#retrocomputing #emulation

04.11.2025 20:16 β€” πŸ‘ 84    πŸ” 15    πŸ’¬ 3    πŸ“Œ 0
Preview
Defeating KASLR by Doing Nothing at All Posted by Seth Jenkins, Project Zero Introduction I've recently been researching Pixel kernel exploitation and as part of this research I ...

New Blog Post: Seth Jenkins broke kASLR by doing … nothing 😩

googleprojectzero.blogspot.com/2025/11/defe...

03.11.2025 18:17 β€” πŸ‘ 9    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0

[RSS] Drawn to Danger: Windows Graphics Vulnerabilities Lead to Remote Code Execution and Memory Exposure


research.checkpoint.com ->


Original->

03.11.2025 13:53 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image

Interested in Jump The Wall? Applications close Nov 7 πŸ”₯
www.districtcon.org/jtw

31.10.2025 19:52 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
Tap-and-Steal: The Rise of NFC Relay Malware on Mobile Devices NFC relay malware on Android devices is exploiting Tap-to-Pay systems, targeting financial institutions globally with sophisticated attacks and minimal user interaction.

Zimperium has discovered more than 760 Android apps that steal and relay NFC data to a remote attacker

zimperium.com/blog/tap-and...

30.10.2025 15:29 β€” πŸ‘ 9    πŸ” 5    πŸ’¬ 0    πŸ“Œ 1
Preview
BRONZE BUTLER exploits Japanese asset management software vulnerability The threat group targeted a LANSCOPE zero-day vulnerability (CVE-2025-61932)

Sophos has linked the recent Lanscope zero-day to Bronze Butler (Tick)

news.sophos.com/en-us/2025/1...

30.10.2025 20:25 β€” πŸ‘ 5    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0

[RSS] [Blog] A Retrospective Analysis of CVE-2025-59287 in Microsoft WSUS


code-white.com ->


Original->

30.10.2025 13:39 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Exploiting Ghost SPNs and Kerberos Reflection for SMB Privilege Elevation Understanding how attackers use Ghost Service Principal Names to initiate authentication reflection can help you avoid similar vulnerabilities.

Blog post about my recent CVE-2025-58726, aka β€œThe Ghost Reflection” is out, read it here:
semperis.com/blog/exploit...
πŸ™ƒ

29.10.2025 17:19 β€” πŸ‘ 4    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Bsides Seattle Bsides Seattle Security Conference

Tickets for BSides Seattle 2026 are open

www.bsidesseattle.com

28.10.2025 18:17 β€” πŸ‘ 6    πŸ” 7    πŸ’¬ 2    πŸ“Œ 0
Post image Post image

We're officially announcing our speakers DistrictCon Year 1! Check out our incredible lineup: www.districtcon.org/speakers

This also includes our Day 1 & Day 2 Keynotes from Ian Levy and Dan Ridge.

And don't forget, GA tickets go on sale November 16! See you in January! πŸͺ©

27.10.2025 16:41 β€” πŸ‘ 11    πŸ” 14    πŸ’¬ 0    πŸ“Œ 3
CVE-2025-12220 - Busybox 1.31.1 - Multiple Known Vulnerabilities Busybox 1.31.1 - Multiple Known Vulnerabilities.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.

CVE-2025-12220 - Busybox 1.31.1 - Multiple Known Vulnerabilities
CVE ID : CVE-2025-12220

Published : Oct. 25, 2025, 4:15 p.m. | 45Β minutes ago

Description : Busybox 1.31.1 - Multiple Known Vulnerabilities.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19....

25.10.2025 17:51 β€” πŸ‘ 8    πŸ” 8    πŸ’¬ 1    πŸ“Œ 4
Preview
The Junkyard β€” DistrictCon

Junkyard closes TODAY!!!!
www.districtcon.org/junkyard

24.10.2025 18:00 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image 23.10.2025 17:57 β€” πŸ‘ 1    πŸ” 2    πŸ’¬ 0    πŸ“Œ 2
Post image

The CFP for RE//verse 2026 is open, but not for long! Submissions close November 14th. Share your best RE and security research with us here: sessionize.com/reverse-2026

21.10.2025 19:20 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

The Linux kernel has patched a bug in the RDSEED entropy generator that caused AMD Zen5 chips to fail to produce random numbers.

The patch disables RDSEED and forces all AMD Zen5 processors to use RDRAND for generating random numbers.

lore.kernel.org/lkml/2025101...

19.10.2025 14:47 β€” πŸ‘ 20    πŸ” 11    πŸ’¬ 0    πŸ“Œ 1

[RSS] exploits.club Weekly Newsletter 89 - iOS GPU Driver Bugs, Kernel Stack UAFs, Hardware Wallet Auth Bypasses, and More


blog.exploits.club ->


Original->

16.10.2025 15:45 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Zero Day Initiative β€” Pwn2Own Automotive Returns to Tokyo with Expanded Chargers and More! If you just want to read the rules, click here .  Now entering its third year, Pwn2Own Automotive returns to Automotive World in Tokyo on January 21 – 23, 2026. Over the last two years, ...

Announcing #Pwn2Own Automotive 2026! We're heading back to Tokyo and we're adding new targets Level 3 charging thanks to #Aplitronic & the OCTT thanks to the @openchargealliance.org. Tesla is back, too. Check out the details at www.zerodayinitiative.com/blog/2025/10...

16.10.2025 15:07 β€” πŸ‘ 1    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

Talks from the REcon 2025 security conference, which took place in June, areΒ available on YouTube

www.youtube.com/@reconmtl/vi...

15.10.2025 23:31 β€” πŸ‘ 11    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0
Post image

🚨 Save the Date for #offensivecon26

Mark your calendars, spread the word, and stay tuned for when registrations open!

πŸ“ Hilton Berlin
🧠 Trainings: 11–14 May 2026
🎀 Conference: 15–16 May 2026

Visit πŸ”—offensivecon.org for more details.

15.10.2025 13:44 β€” πŸ‘ 3    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
Cyber giant F5 Networks says government hackers had 'long-term' access to its systems, stole code and customer data | TechCrunch The company, which provides cybersecurity defenses to most of the Fortune 500, said the DOJ allowed it to delay notifying the public on national security grounds.

This one's a wild/messy one: Cyber giant F5, which serves most of the Fortune 500, said unknown government hackers had 'long term' access to its network:

β€’ stole source code, some customer data
β€’ accessed undisclosed vulns in BIG-IP
β€’ DOJ allowed F5 to delay public notice citing national security

15.10.2025 15:55 β€” πŸ‘ 62    πŸ” 57    πŸ’¬ 1    πŸ“Œ 5
Preview
Pwned Balancers: Commandeering F5 and Citrix for Persistent Access & C2 - Eclypsium | Supply Chain Security for the Modern Enterprise Summary The last 3 years have seen attackers turn their spotlights on initial network access through VPN concentrators, load balancers, routers, and IoT devices. Once the realm of only the most skille...

eclypsium.com/research/pwn... - This is the blog version of the Ekoparty talk I did in 2022; while the Chinese APTs have developed more advanced techniques, a lot of this may still be useful as you deal with the bombshell that dropped today.

15.10.2025 16:51 β€” πŸ‘ 9    πŸ” 7    πŸ’¬ 0    πŸ“Œ 0
Preview
Microsoft Security Advisory CVE-2025-55315: .NET Security Feature Bypass Vulnerability Β· Issue #371 Β· dotnet/announcements Microsoft Security Advisory CVE-2025-55315: .NET Security Feature Bypass Vulnerability Executive summary Microsoft is releasing this security advisory to provide information about a vulnerability i...

It's Patch Tuesday and ASP.NET Core has a doozy, with a CVSS score of 9.9, our highest ever. Let's examine why.

The bug enables http request smuggling, which on its own for ASP.NET Core would be nowhere near that high, but that's not how we rate things...

* Thread- (1/7)

14.10.2025 18:01 β€” πŸ‘ 51    πŸ” 43    πŸ’¬ 6    πŸ“Œ 2

[RSS] Oops! It's a kernel stack use-after-free: Exploiting NVIDIA's GPU Linux drivers


blog.quarkslab.com ->


Original->

14.10.2025 19:40 β€” πŸ‘ 3    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

Modern iOS Security Features – A Deep Dive into SPTM, TXM, and Exclaves


arxiv.org ->

#fromTwitter


Original->

14.10.2025 12:28 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

Trend Micro's ZDI has reported 13 vulnerabilities in the Ivanti Endpoint Manager that are still unpatched after the vendor requested an extension until March next year

www.zerodayinitiative.com/advisories/p...

12.10.2025 14:33 β€” πŸ‘ 6    πŸ” 3    πŸ’¬ 1    πŸ“Œ 0
Preview
A major evolution of Apple Security Bounty, with the industry's top awards for the most advanced research - Apple Security Research Today we’re announcing the next major chapter for Apple Security Bounty, featuring the industry’s highest rewards β€” up to $2 million and a maximum payout in excess of $5 million β€” expanded research categories, and a flag system for researchers to objectively demonstrate vulnerabilities and obtain accelerated awards.

We're updating our bounty program with the top award now set at $2 million for zero-click remote exploit chains. In addition - there are increased awards for proximate wireless attacks, WebKit, and Gatekeeper

security.apple.com/blog/apple...

10.10.2025 17:05 β€” πŸ‘ 12    πŸ” 10    πŸ’¬ 1    πŸ“Œ 2
Preview
GitHub - bahorn/detect-unsigned-module: Some linux rootkit detection tricks Some linux rootkit detection tricks. Contribute to bahorn/detect-unsigned-module development by creating an account on GitHub.

github.com/bahorn/detec...

some rootkit detection stuff

one involving seeing if a line shows up in dmesg or not after loading a unsigned module, if it doesn't show something has been loaded in the past.

other diffs two ways of reading the kernel message buffer, getting logs hidden in one

06.10.2025 17:05 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0

Close your eyes and ✨imagine:

From a low-integrity process (from LPAC even), you can inject your data anywhere you want:
privileged tasks, PPL/protected processes, the OS kernel itself, and VTL1 trustlets.

Now open your eyes. It is not hypothetical.
It is the reality. Read it on page 33.

05.10.2025 00:14 β€” πŸ‘ 6    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0
Post image

Our CFP is open! If you’re working on something exciting, we want to hear from you! Submit your talk for RE//verse 2026: sessionize.com/reverse-2026

02.10.2025 15:41 β€” πŸ‘ 1    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

@droner is following 20 prominent accounts