Video wird geladen...
Video konnte nicht geladen werden
CVE-2023-3390: UAF on Linux Netfilter nftables MFT_MSG_NEWRULE leads to LPE. We exploit this tiny 1-day vuln to pwn all targets of Google's kernelCTF for the first time in history. Nice and clear triple-kill 🥳
67,444 Aufrufe • vor 2 Jahren •via X (Twitter)
6 Kommentare

c0m0r1vor 2 Jahren
For details about vuln, exploit, and our novel techniques & research:

c0m0r1vor 2 Jahren
Thanks to @0x10n for outstanding collaboration on COS exploit & post-exploit analysis, and @insu_yun & KAIST Hacking lab for unwavering support and encouragement!

h0mbrevor 2 Jahren
this is awesome, great job writing all the exploits

Minghao Linvor 2 Jahren
Strong!

💫 Dor 🎗️vor 2 Jahren
nice

Alex Plaskettvor 2 Jahren
@insitusec Great work, thanks for sharing! Netfilter, the subsystem that keeps giving.

