dinosaurlover38 Profile
dinosaurlover38

@_dinolover38

Followers
641
Following
399
Media
1
Statuses
24

0-day monkey | IBM X-Force Offensive Research (XOR)

Stuck in Vim
Joined May 2025
Don't wanna be here? Send us removal request.
@capt_red_beardz
Patrick Fussell
13 days
Any Canadian friends with strong red team backgrounds looking for an AdvSim spot? https://t.co/Ba8V6QcYoP
ibmglobal.avature.net
1
12
43
@_dinolover38
dinosaurlover38
13 days
You can also use this same idea to defeat CONFIG_SLAB_VIRTUAL, even if a kernel PTE has been assigned; the memory still has another VMA from the fixed phys/virt relationship We did this in our exploit for CVE-2025-23282 (public soon🤞)
@__sethJenkins
Seth Jenkins
13 days
We really should be talking about this more....KASLR is just not working properly on Android right now, and it hasn't for a long time. https://t.co/AE0vBXEcob
0
3
23
@_dinolover38
dinosaurlover38
16 days
huge if true
@j2k3k
Jake Knowlton
17 days
🚨 NEW DINOSAUR DROPPED 🚨 https://t.co/YqYEXflW9X
0
0
3
@bohops
bohops
22 days
Last month, @d_tranman and I gave a talk @MCTTP_Con called "COM to the Darkside" focusing on COM/DCOM cross-session and fileless lateral movement tradecraft. Check out the slides here: https://t.co/1KNln1ldzF Recording should be released soon.
Tweet card summary image
github.com
Slides and resources from MCTTP 2025 Talk. Contribute to bohops/COM-to-the-Darkside development by creating an account on GitHub.
1
80
251
@chompie1337
chompie
26 days
en 5 minutos, en vivo!! entrevista en español con yo @_dinolover38
4
11
51
@chompie1337
chompie
1 month
they didn’t want kCTF players to bankrupt them
3
8
165
@chompie1337
chompie
1 month
tfw a tweetable PoC can take down yr cloud compute
@_dinolover38
dinosaurlover38
1 month
CVE-2025-23282 is going to debut tomorrow at @hexacon_fr in our talk "CUDA de Grâce" w/ @chompie1337, but you can try CVE-2025-23332 now! Tweetable Python PoC: ``` import fcntl fcntl.ioctl(open('/dev/nvidiactl'),218,0) ```
8
51
244
@_dinolover38
dinosaurlover38
1 month
CVE-2025-23282 is going to debut tomorrow at @hexacon_fr in our talk "CUDA de Grâce" w/ @chompie1337, but you can try CVE-2025-23332 now! Tweetable Python PoC: ``` import fcntl fcntl.ioctl(open('/dev/nvidiactl'),218,0) ```
@NVIDIAPSIRT
NVIDIA PSIRT
1 month
NVIDIA has released a security bulletin for NVIDIA GPU Display Drivers. NVIDIA thanks Daniel Rhea, Sam Lovejoy, Valentina Palmiotti, Robin Bastide, JunDong Xie, Giovanni Di Santi, Andrea Di Dio, and Cristiano Giuffrida for reporting their findings. https://t.co/pFIbG28ul3
4
61
268
@_dinolover38
dinosaurlover38
2 months
¡Rompiendo los drivers GPU en español! Hasta pronto Buenos Aires
@ekoparty
Ekoparty | Hacking everything
2 months
Charlas Main Track #EKO2025 🔥 📌 “Rompiendo la Jaula: Compromiso de la nube IA bajo fuego de GPU NVIDIA” dictada por @_dinolover38 y @chompie1337. 💡 El auge explosivo de la IA ha disparado la demanda mundial de GPUs. Para satisfacer esta demanda, los proveedores de nube han
0
1
6
@chompie1337
chompie
2 months
kernel hackers go serverless ring0 → cloud 9 ☁️ ?? brb pwning yr gpu nodes ✨
26
122
623
@_dinolover38
dinosaurlover38
2 months
Very excited to do my first public talk at Hexacon w/ @chompie1337! 0-day GPU driver exploits anyone?
@hexacon_fr
Hexacon
2 months
📢 CUDA de Grâce: Owning AI Cloud Infrastructure with GPU exploits by Valentina Palmiotti (@chompie1337) & Samuel Lovejoy (@_dinolover38)
5
4
57
@_dinolover38
dinosaurlover38
2 months
First time back to the gym since new job (4 months!). Happy brain chemicals Healthy hacker best hacker
0
0
5
@chompie1337
chompie
3 months
Hosting a Windows kernel chal is hard! The box has been slammed so bad someone needs to go into the office to fix it 😭. And yet, still no one has the flag. I guess Infinite Loop Solution Inc.’s driver is totally secure 😏. The backup is online! gogogo
@phrack
Phrack Zine
3 months
Hello! If you have been working on the Windows challenge for the Phrack CTF, we apologize for the downtime. Check the challenge description for the new IP address. Happy hacking 😊
5
12
96
@chompie1337
chompie
4 months
I’m honored to be joining some amazing women in cybersecurity at the #BHUSA panel “Hacking the Status Quo”. We’ll be sharing the journey of our careers: how we got started and what’s shaped us. Bring your questions and leave with fresh perspective 😊
3
15
148
@natashenka
Natalie Silvanovich
4 months
While most vendors ship timely patches for vulnerabilities reported by Project Zero, they don’t always reach users. Today, we’re announcing Reporting Transparency, a new policy to encourage downstream fixes https://t.co/ktussY1I65
4
42
145
@_dinolover38
dinosaurlover38
5 months
Just got an LPE exploit for a 0-day bug I found working on the mitigation-v4 Linux kernel first try :D shoutout @chompie1337 who's cooking up the container escape 👀
2
8
124