- Последний пост
- 21:14
- Последнее чтение
- 14:18
- Постов за неделю
- 23
- Всего постов
- 34
- Тип
- открытый
- Язык
- английский
- В каталоге с
- 13 авг.
- 1/24сутки в ленте
- 1 412
- 1/48двое суток
- 1 618
- 1/72трое суток
- 1 745
Оценка по просмотрам недавних постов: пост набирает почти всё за первые сутки.
Посты
???
🌞🥒👍 😴😄 🌞🥒👍 😴😄 🌞🥒👍 😴😄 🌞🥒👍 😴😄 🌞🥒👍 😴😄
видео или голосовое, без подписи
OOBW vulnerability on QTEE gg
QTEE doesn't have PAC on all funcs LMAOOO no AUTIA, and can BR to X??? you're soo f*** now
видео или голосовое, без подписи
2026-07-01 not patched
OOBW vulnerability on QTEE gg
lol
oops, I've done that in my personal device, does this mean I'm cooked?
it completely fell
OOBW vulnerability on QTEE gg
OOB W!!!!!
GunYAH, should i find EL2 escape sbx and get to EL3 after? i noticed that this project doesn't have too much CVEs published about it, i was bit questionable if this thing is ever vulnerable, it doesn't seem normal, or am I missing something? don't bother with the time, yes it's 5 am in the morning
。。。 did i ?
。。。 did i ?
TEESim 4.0 is out! https://github.com/JingMatrix/TEESimulator/releases/tag/v4.0
reporting security vulnerabilities in 2026 is soo funny
expect few days refreshing issue tracker to see new topic regarding CDI/UDS leak incident, repeating the same huzz that happened to leaked hardware backed keys, back to start point, what's the solution?
due to my laziness, i planned to post a vulnerability chain in *** Test Labs devices where you can extract their UDS (fused in silicon), however i still didn't finish the full write-up. these devices come with a locked bootloader/non-rooted and we only have adb access (uid = 2000). this would demonstrate how we can get from uid = 2000 to S-EL0/S-EL1 access, and extract everything from secure environment, and side channel bad crypto cell implementation of HKDF/KDF for revealing their secrets, trans passing back to EL0 for stdout. . stay tuned!