ZygoSec Profile Banner
ZygoSec Profile
ZygoSec

@ZygoSec

Followers
1K
Following
22
Media
12
Statuses
45

Education platform for acquiring skills in modern vulnerability research & software exploitation

London, England
Joined May 2017
Don't wanna be here? Send us removal request.
@ZygoSec
ZygoSec
11 days
How 1-click iOS exploit chains work (WebKit exploitation basics) https://t.co/ggBkWcFh1d
2
31
140
@bellis1000
Billy Ellis
1 month
Is the iPhone 17 Safe from Exploitation? (MTE breakdown)
1
14
81
@ZygoSec
ZygoSec
1 month
Does the iPhone 17 Kill Exploitation for Good? (Memory Integrity Enforcement breakdown) https://t.co/CFMl7I7Nlk
0
5
20
@bellis1000
Billy Ellis
2 months
How Does the iOS Kernel Copy Memory? (Virtual Memory Internals) https://t.co/qdS4mVnmx6
4
43
207
@bellis1000
Billy Ellis
5 months
Out-of-bounds swap on iOS heap when decoding a malicious audio stream (CVE-2025-31200) https://t.co/qRzR5Qo00T
1
33
192
@ZygoSec
ZygoSec
5 months
How This Weird Exploit Primitive Corrupts iOS Heap Memory https://t.co/PbYKQjsAgq
0
10
67
@ZygoSec
ZygoSec
6 months
This Video Can Exploit Your iPhone (CVE-2025-31200) https://t.co/cLxYQtdldg
0
4
25
@ZygoSec
ZygoSec
9 months
Allocating Objects to Build Kernel R/W Primitives https://t.co/JxeLH6rNHE
0
3
38
@ZygoSec
ZygoSec
10 months
How PhysPuppet Exploits the iOS Kernel https://t.co/9MAZxjBHGA
4
31
108
@ZygoSec
ZygoSec
1 year
How This JavaScript Code Exploits your Browser (CVE-2023-38600) https://t.co/j9372U96V3
1
4
33
@bellis1000
Billy Ellis
4 years
Today I wanted to share a recent project of mine - a tool for visually representing & tracking memory, for iOS security researchers
Tweet card summary image
bellis1000.medium.com
Happy New Year!🥳
12
220
808
@bellis1000
Billy Ellis
4 years
Just published a tool I wrote a couple months back to pull C++ object names from kernel memory. Bit hacky, but works & is useful if you're someone who spends a lot of time looking at kernel memory dumps. https://t.co/IhWoA7v2m3
4
42
177
@bellis1000
Billy Ellis
5 years
Just published a new blog post - Exploring the ASLR implementation in the iOS kernel
Tweet card summary image
bellis1000.medium.com
In this blog post I wanted to take a look at ASLR and how the iOS kernel implements it for user-space processes.
11
115
441
@bellis1000
Billy Ellis
6 years
Just published a blog post talking about some iOS kernel framebuffer research I’ve been looking at over the last couple weeks. Have a read if you’re interested :)
Tweet card summary image
bellis1000.medium.com
It’s been over two years since I last published a blog, so I thought I’d give this another go in 2020 and kick it off by writing about an…
2
113
361
@Fox0x01
Azeria
7 years
Billy Ellis (@bellis1000) giving a guest lecture at my ARM Exploit Development training. 👏🏼 Day 3 almost over. Students are happy. So am I. :)
3
12
166
@trendquest
trendquest
7 years
Interesting lecture of @bellis1000 of @ZygoSec on #ARMv8 and mobile chip tech at two days conference @codetalkshh in Hamburg. Great trends evolving in mobile tech! . How to use this? Grow your business by securing trends! ... #Future #Security #deepcoding #ARMvx #trendquesthelps
0
2
9
@Fox0x01
Azeria
7 years
If you want to learn about ARM exploitation, you should definitely watch this excellent talk from @bellis1000! It is extraordinarily well explained. Introduction to Return Oriented Exploitation on ARM64 https://t.co/pkQsde2Lcg
5
151
452
@bellis1000
Billy Ellis
7 years
Out of curiosity for how debuggers work, I began writing my own bare-bones ARM&ARM64 debugger for iOS. At the moment it has basic functionality, including attaching to processes, viewing register state, and reading and writing to memory!
7
41
264
@bellis1000
Billy Ellis
7 years
Live kernel debugging on a virtualised iOS 12.0! Having the ability to do this sort of thing with whichever iPhone/version you want is gonna greatly assist developers & researchers with future iOS kernel security research
5
51
219
@ZygoSec
ZygoSec
8 years
iOS 11.2 KASLR defeat using thread_get_state() kernel info leak vulnerability
Tweet card summary image
github.com
CVE-2018-4185: iOS 11.2-11.2.6 kernel pointer disclosure introduced by Apple's Meltdown mitigation. - bazad/x18-leak
2
24
77