cffsmith Profile Banner
Carl Smith Profile
Carl Smith

@cffsmith

Followers
1K
Following
956
Media
0
Statuses
310

V8 Security @Google/@v8js; @FluxFingers/@Sauercl0ud; previously Intern {Project Zero, @XI_Research}. Personal account. https://t.co/w9zosKSHdh on Bluesky.

Switzerland, Germany, USA
Joined May 2014
Don't wanna be here? Send us removal request.
@cffsmith
Carl Smith
1 month
RT @5aelo: @mistymntncop I've also updated our V8 Exploit Tracker sheet now: (see the 2025 tab) :).
0
13
0
@cffsmith
Carl Smith
3 months
RT @itswillis: . and now, introducing Part 6 of @j00ru's work on the Windows Registry:. . 📖👀.
0
22
0
@cffsmith
Carl Smith
3 months
RT @i41nbeer: My writeup of the 2023 NSO in-the-wild iOS zero-click BLASTDOOR webp exploit: Blasting Past Webp -.
0
235
0
@cffsmith
Carl Smith
3 months
RT @_tsuro: Senior Software Engineer, V8 Bug Detection: Software Engineer II, V8 Bug Detection:..
0
6
0
@cffsmith
Carl Smith
3 months
RT @_tsuro: V8 Security is hiring in Warsaw!. If you want to work on improving our JavaScript and Wasm fuzzers, check out the links below!.
0
26
0
@cffsmith
Carl Smith
4 months
RT @ifsecure: I tweeted before about the Apple CoreAudio issues found by Google TAG. Well, the fuzz harness used to find these issues is no….
0
40
0
@cffsmith
Carl Smith
4 months
RT @darkfloyd1014: Congratulations to Carl Smith from v8 Security team and join Blackhat USA review board as guest reviewer. He is willing….
0
2
0
@cffsmith
Carl Smith
5 months
Make sure to update to the latest swift version too!.
0
1
7
@cffsmith
Carl Smith
5 months
Some slides discussing some of this work can be found here:.
1
1
8
@cffsmith
Carl Smith
5 months
I’m very excited to announce that we at V8 Security have finally published our first version of Fuzzilli that understands Wasm!.Go check it out at While we still have a way to go in improving it, we think it shows a promising approach!.
15
107
470
@cffsmith
Carl Smith
6 months
RT @gmail: meow meow meow meow meow meowwww.
0
5K
0
@cffsmith
Carl Smith
6 months
RT @sha1lan: "Invariant inversion" in memory-unsafe languages.
0
20
0
@cffsmith
Carl Smith
8 months
RT @0x10n: Uploaded my slides from POC2024. I'll soon be giving a slightly shorter version of the same talk on CODE BLUE 2024 too. https://….
0
36
0
@cffsmith
Carl Smith
8 months
RT @vxresearch: @cffsmith on stage and talk about Fuzzing
Tweet media one
Tweet media two
Tweet media three
0
1
0
@cffsmith
Carl Smith
8 months
RT @ekoparty: "Advanced Fuzzing With LibAFL" dictada por @domenuk I Sala E - MainTrack #EKO2024 🔥
Tweet media one
0
5
0
@cffsmith
Carl Smith
8 months
RT @GoogleVRP: Chrome VRP update!. V8 Sandbox Bypass Rewards have been expanded to include demonstrated memory corruption outside the V8 sa….
0
7
0
@cffsmith
Carl Smith
8 months
RT @darkfloyd1014: #VXCON 3 Days to go .Please join us to meet the best line up of hackers. @vxresearch .@alisaes….
0
7
0
@cffsmith
Carl Smith
8 months
RT @POC_Crew: #POC2024. Carl smith(@cffsmith) - Fuzzing for complex bugs across languages in JavaScript Engines 🏎️
Tweet media one
Tweet media two
0
3
0
@cffsmith
Carl Smith
9 months
RT @fluxfingers: Hacklu CTF starts in 24 hours ⏳ We prepared some banger challenges you don't want to miss!. Register now: .
0
7
0
@cffsmith
Carl Smith
9 months
RT @darkfloyd1014: VXCON talk highlights: we have got Carl Smith from Google v8, VictorV from Kunlun who is Pwn2Own winner in VM escape are….
0
9
0