es
Feedback

¡No caigas en manos de tramposos! Telemetrio encuentra y marca estos canales 👉 Si quieres ver la etiqueta, suscríbete 👈

Linux Kernel Security

Linux Kernel Security

Ir al canal en Telegram

Links related to Linux kernel security and exploitation | Chat @linkersec_chat | @xairy @a13xp0p0v | Mirrors on https://xairy.io/linkersec

Mostrar más
4 753
Suscriptores
Sin datos24 horas
+47 días
+6230 días
Atraer Suscriptores
oct '26
octubre '26
+26
en 0 canales
septiembre '26
+129
en 1 canales
Get PRO
agosto '26
+138
en 1 canales
Get PRO
julio '26
+171
en 5 canales
Get PRO
junio '26
+163
en 0 canales
Get PRO
mayo '26
+124
en 0 canales
Get PRO
abril '26
+106
en 0 canales
Get PRO
marzo '26
+81
en 0 canales
Get PRO
febrero '26
+107
en 1 canales
Get PRO
enero '26
+124
en 4 canales
Get PRO
diciembre '25
+156
en 2 canales
Get PRO
noviembre '25
+120
en 1 canales
Get PRO
octubre '25
+95
en 1 canales
Get PRO
septiembre '25
+102
en 2 canales
Get PRO
agosto '25
+52
en 1 canales
Get PRO
julio '25
+70
en 1 canales
Get PRO
junio '25
+51
en 1 canales
Get PRO
mayo '25
+65
en 2 canales
Get PRO
abril '25
+78
en 2 canales
Get PRO
marzo '25
+111
en 2 canales
Get PRO
febrero '25
+53
en 0 canales
Get PRO
enero '25
+52
en 1 canales
Get PRO
diciembre '24
+147
en 3 canales
Get PRO
noviembre '24
+93
en 0 canales
Get PRO
octubre '24
+137
en 2 canales
Get PRO
septiembre '24
+134
en 2 canales
Get PRO
agosto '24
+111
en 2 canales
Get PRO
julio '24
+106
en 2 canales
Get PRO
junio '24
+127
en 0 canales
Get PRO
mayo '24
+77
en 0 canales
Get PRO
abril '24
+94
en 0 canales
Get PRO
marzo '24
+81
en 1 canales
Get PRO
febrero '24
+96
en 0 canales
Get PRO
enero '24
+104
en 0 canales
Get PRO
diciembre '23
+84
en 0 canales
Get PRO
noviembre '23
+150
en 0 canales
Get PRO
octubre '23
+91
en 0 canales
Get PRO
septiembre '23
+134
en 0 canales
Get PRO
agosto '23
+92
en 0 canales
Get PRO
julio '23
+73
en 0 canales
Get PRO
junio '23
+100
en 0 canales
Get PRO
mayo '23
+144
en 0 canales
Get PRO
abril '23
+36
en 0 canales
Get PRO
marzo '23
+43
en 0 canales
Get PRO
febrero '23
+73
en 0 canales
Get PRO
enero '23
+67
en 0 canales
Get PRO
diciembre '22
+80
en 0 canales
Get PRO
noviembre '22
+85
en 0 canales
Get PRO
octubre '22
+66
en 0 canales
Get PRO
septiembre '22
+77
en 0 canales
Get PRO
agosto '22
+109
en 0 canales
Get PRO
julio '22
+67
en 0 canales
Get PRO
junio '22
+84
en 0 canales
Get PRO
mayo '22
+142
en 0 canales
Get PRO
abril '22
+91
en 0 canales
Get PRO
marzo '22
+98
en 0 canales
Get PRO
febrero '22
+68
en 0 canales
Get PRO
enero '22
+128
en 0 canales
Get PRO
diciembre '21
+57
en 0 canales
Get PRO
noviembre '21
+149
en 0 canales
Get PRO
octubre '21
+64
en 0 canales
Get PRO
septiembre '21
+111
en 0 canales
Get PRO
agosto '21
+123
en 0 canales
Get PRO
julio '21
+48
en 0 canales
Get PRO
junio '21
+23
en 0 canales
Get PRO
mayo '21
+29
en 0 canales
Get PRO
abril '21
+333
en 0 canales
Fecha
Crecimiento de Suscriptores
Menciones
Canales
09 octubre+2
08 octubre+3
07 octubre+4
06 octubre+1
05 octubre+3
04 octubre+3
03 octubre+2
02 octubre+4
01 octubre+4
Publicaciones del Canal
SoK: Take a Deep Step into Linux Kernel Hardening Effectiveness from the Offensive-Defensive Perspective A paper with analysi
SoK: Take a Deep Step into Linux Kernel Hardening Effectiveness from the Offensive-Defensive Perspective A paper with analysis of 121 publicly documented exploits since 2015 and in-depth evaluation of 51 existing kernel defense mechanisms.

2
PageJack in Action: CVE-2022-0995 exploit Article by Jean Vincent describing how a relatively old CVE can be exploited using
PageJack in Action: CVE-2022-0995 exploit Article by Jean Vincent describing how a relatively old CVE can be exploited using the PageJack exploitation technique.
2 025
3
CROSS-X: Generalized and Stable Cross-Cache Attack on the Linux Kernel Paper by Dong-ok Kim, Juhyun Song, et al. documenting
CROSS-X: Generalized and Stable Cross-Cache Attack on the Linux Kernel Paper by Dong-ok Kim, Juhyun Song, et al. documenting the steps for executing a cross-cache attacks for caches with min_partial >= cpu_partial_slabs. The paper also describes a fuzzing-based approach of finding target slab objects useful for exploitation.
2 720
4
Testing race conditions with memory access tracing and stack-based delay injection Article by Jann Horn about MAccConc — a KC
Testing race conditions with memory access tracing and stack-based delay injection Article by Jann Horn about MAccConc — a KCOV-based tool for exploring possible kernel code interleavings of a multi-threaded program.
3 149
5
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free Article about exploiting CVE-2026-64564 in the implementation
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free Article about exploiting CVE-2026-64564 in the implementation of the Stream Control Transmission Protocol (SCTP). Authors exploited a UAF in the kmalloc-1k cache to gain root and escape a container.
3 311
6
Gone in 60 Frames – USB Video Exploitation Article (and slides) by Alex Plaskett and Robert Herrera about fuzzing USB drivers
Gone in 60 Frames – USB Video Exploitation Article (and slides) by Alex Plaskett and Robert Herrera about fuzzing USB drivers with syzkaller and writing an exploit that gains code execution over USB on Ubuntu.
3 831
7
IonStack part III: Rooting Android 17 with GhostLock Article about adapting the exploit of CVE-2026-43499 (racy stack use-aft
IonStack part III: Rooting Android 17 with GhostLock Article about adapting the exploit of CVE-2026-43499 (racy stack use-after-free in the futex implementation) to Android. The researchers used KernelSnitch, ashmem fops overwriting, pipe_buffer corruption, and other tricks to perform LPE.
2 755
8
I handed the epoll UAF to an agent Article by Guy Beck about using Claude for porting an exploit for an eventpoll vulnerabili
I handed the epoll UAF to an agent Article by Guy Beck about using Claude for porting an exploit for an eventpoll vulnerability to Android.
2 741
9
IonStack part II: GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years Article about exploiting a
IonStack part II: GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years Article about exploiting a racy stack use-after-free in the futex implementation. The bug was used to pwn a kernelCTF instance.
2 574
10
Unprivileged root via an out-of-bounds write in the FUSE readdir cache (CVE-2026-31694) Article by Stan Shaw about exploiting
Unprivileged root via an out-of-bounds write in the FUSE readdir cache (CVE-2026-31694) Article by Stan Shaw about exploiting a page OOB write bug in the FUSE subsystem by overwriting /etc/passwd in the page cache.
2 341
11
Januscape: Guest-to-Host Escape in KVM/x86 Hyunwoo Kim published an article about a use-after-free vulnerability in the shado
Januscape: Guest-to-Host Escape in KVM/x86 Hyunwoo Kim published an article about a use-after-free vulnerability in the shadow MMU emulation of KVM/x86 (CVE-2026-53359). Both Intel (VMX) and AMD (SVM) code is affected. The article only covers achieving a kernel crash via this bug, but the vulnerability can also be exploited to escape the guest VM. The author used this bug to pwn a kvmCTF instance.
2 441
12
ITScape: Guest-to-Host Escape in KVM/arm64 Article by Hyunwoo Kim about exploiting a race condition bug in the KVM driver on
ITScape: Guest-to-Host Escape in KVM/arm64 Article by Hyunwoo Kim about exploiting a race condition bug in the KVM driver on the arm64 architecture to escape the guest VM.
7 309
13
Bad Epoll: The bug missed by Mythos Article by Jaeyoung Chung about exploiting CVE-2026-46242 — a race condition bug in the e
Bad Epoll: The bug missed by Mythos Article by Jaeyoung Chung about exploiting CVE-2026-46242 — a race condition bug in the eventpoll subsystem. Jaeyoung exploited this bug to claim a kernelCTF entry, but the vulnerability also affects Android kernels.
4 335
14
Unprivileged root via a use-after-free in DRM GEM change_handle (CVE-2026-46215) Stan Shaw published an article about exploit
Unprivileged root via a use-after-free in DRM GEM change_handle (CVE-2026-46215) Stan Shaw published an article about exploiting UAF in a DRM GEM ioctl. The researcher reallocated freed memory as a pipe_buffer array to set PIPE_BUF_FLAG_CAN_MERGE and perform the Dirty Pipe attack.
3 085
15
Off By !: Exploiting a Use-after-Free in the Linux Kernel Oliver Sieber published a write-up about CVE-2026-23111 in nftables, which they found in early 2025 and other researchers patched upstream in February 2026. The article describes exploiting this UAF on Debian and Ubuntu.
2 785
16
CIFSwitch: a non-universal Linux local root vulnerability Asim Viladi Oglu Manizada posted an article about a nice logic bug in the interaction between the kernel CIFS subsystem and the userspace cifs-utils package. An attacker can forge a "cifs.spnego" key in Linux keyring to make the kernel run a root userspace helper to escalate privileges of the attacker's process.
2 656
17
Unix GC Remastered Article by Moe Acherir about the internals of the new Unix sockets garbage collector implementation and th
Unix GC Remastered Article by Moe Acherir about the internals of the new Unix sockets garbage collector implementation and the analysis of CVE-2025-40214, which was used in a kernelCTF entry.
2 820
18
PinTheft Linux LPE Aaron Esau published an LPE exploit for a page double-free bug in the RDS zerocopy implementation, which can be turned into a page-cache overwrite through io_uring.
2 461
19
Logic bug in the Linux kernel's __ptrace_may_access() function (CVE-2026-46333) Article about a logical bug in the ptrace imp
Logic bug in the Linux kernel's __ptrace_may_access() function (CVE-2026-46333) Article about a logical bug in the ptrace implementation that allows getting access to file descriptors of other processes and thus escalating privileges in certain scenarios.
2 923
20
StepStone: LLM-Based GPU Kernel Driver Fuzzing via User-Space Libraries Paper by Xiaochen Zou et. al about using LLMs for gen
StepStone: LLM-Based GPU Kernel Driver Fuzzing via User-Space Libraries Paper by Xiaochen Zou et. al about using LLMs for generating syzkaller descriptions for fuzzing GPU drivers via their userspace libraries APIs.
2 629