Load site modules...
lade...
random avatar

gergelykalman - Network

Posts Subscribe

I published a correction to my slides/blogposts regarding rename(). I have incorrectly stated that rename("./a", "./b")...

https://infosec.exchange/@gergel...

I published a correction to my slides/blogposts regarding rename(). I have incorrectly stated that rename("./a", "./b") was racy. It is not.
For most situations this is not a huge deal, but I still feel bad that I misled you all, so beers are on me.

gergelykalman.com/corrections-

25.3.2025 14:55I published a correction to my slides/blogposts regarding rename(). I have incorrectly stated that rename("./a", "./b")...
https://infosec.exchange/@gergel...

Since it's almost been a year and OBTSv7 is around the corner, I published the long overdue writeup for...

https://infosec.exchange/@gergel...

Since it's almost been a year and OBTSv7 is around the corner, I published the long overdue writeup for badmalloc:
gergelykalman.com/badmalloc-CV

26.11.2024 08:11Since it's almost been a year and OBTSv7 is around the corner, I published the long overdue writeup for...
https://infosec.exchange/@gergel...

For those of you who might like it: Here are the slides from my Alligatorcon...

https://infosec.exchange/@gergel...

For those of you who might like it: Here are the slides from my Alligatorcon talk:
gergelykalman.com/the-forgotte

13.9.2024 08:28For those of you who might like it: Here are the slides from my Alligatorcon...
https://infosec.exchange/@gergel...

I keygened all of my Hungarian ISP's routers last year:https://gergelykalman.com/hacking-isp-cpe-equipment-fiberhome.html

https://infosec.exchange/@gergel...

I keygened all of my Hungarian ISP's routers last year:

gergelykalman.com/hacking-isp-

8.2.2024 12:09I keygened all of my Hungarian ISP's routers last year:https://gergelykalman.com/hacking-isp-cpe-equipment-fiberhome.html
https://infosec.exchange/@gergel...

Another writeup is up, this time it's sqlol (CVE-2023-32422), a $30,500 macOS TCC...

https://infosec.exchange/@gergel...

Another writeup is up, this time it's sqlol (CVE-2023-32422), a $30,500 macOS TCC bypass:
gergelykalman.com/sqlol-CVE-20

Slowly, but surely I will work off my backlog...

15.11.2023 23:06Another writeup is up, this time it's sqlol (CVE-2023-32422), a $30,500 macOS TCC...
https://infosec.exchange/@gergel...

Post about "lateralus" (a $30,500 TCC bypass) is live: https://gergelykalman.com/lateralus-CVE-2023-32407-a-macos-tcc-bypass.htmlI...

https://infosec.exchange/@gergel...

Post about "lateralus" (a $30,500 TCC bypass) is live: gergelykalman.com/lateralus-CV

I even praise Apple in it. It's wild.

15.11.2023 10:26Post about "lateralus" (a $30,500 TCC bypass) is live: https://gergelykalman.com/lateralus-CVE-2023-32407-a-macos-tcc-bypass.htmlI...
https://infosec.exchange/@gergel...

Here are the slides from my OBTS talk:https://gergelykalman.com/unexpected-unreasonable-unfixable-my-slides-from-obts-v6.html

https://infosec.exchange/@gergel...

Here are the slides from my OBTS talk:
gergelykalman.com/unexpected-u

15.10.2023 10:02Here are the slides from my OBTS talk:https://gergelykalman.com/unexpected-unreasonable-unfixable-my-slides-from-obts-v6.html
https://infosec.exchange/@gergel...

To make even more room in my #OBTS talk, here's a trivial TCC bypass writeup...

https://infosec.exchange/@gergel...

To make even more room in my talk, here's a trivial TCC bypass writeup :)

gergelykalman.com/CVE-2023-385

27.9.2023 15:40To make even more room in my #OBTS talk, here's a trivial TCC bypass writeup...
https://infosec.exchange/@gergel...

Due to lack of time on my #OBTS talk, here's one of the bugs that didn't make the cut:"unnamed app sandbox escape", aka...

https://infosec.exchange/@gergel...

Due to lack of time on my talk, here's one of the bugs that didn't make the cut:
"unnamed app sandbox escape", aka CVE-2023-32364

gergelykalman.com/CVE-2023-323

26.9.2023 14:57Due to lack of time on my #OBTS talk, here's one of the bugs that didn't make the cut:"unnamed app sandbox escape", aka...
https://infosec.exchange/@gergel...
Subscribe
To add news/posts to your profile here, you must add a link to a RSS-Feed to your webfinger. One example how you can do this is to join Fediverse City.
         
Webfan Website Badge
Nutzungsbedingungen   Datenschutzerklärung  Impressum
Webfan | @Web pages | Fediverse Members

⬆️

⬇️