Discussion about this post

User's avatar
Calif's avatar

You can find the PoCs here: https://github.com/califio/publications/tree/main/MADBugs/chrome.

Substack is crazy, it doesn't allow us to update the post.

jafork's avatar

Great work! I’m also working on exploiting GPU vulnerabilities to achieve a Chrome sandbox escape, but I haven’t yet found a way to bypass Address Space Layout Randomization (ASLR). I’m looking forward to the next article and hope it will provide a more detailed discussion of how information leaks can be used to defeat it.

2 more comments...

No posts

Ready for more?