imdadvs Profile Banner
Imdad Profile
Imdad

@imdadvs

Followers
309
Following
595
Media
58
Statuses
2K

Offensive Security | Security Engineering

India
Joined November 2009
Don't wanna be here? Send us removal request.
@imdadvs
Imdad
2 months
"Pixnapping" shows a malicious Android app can force other apps pixels into the compositor, exploit a GPU timing side-channel, and steal Google Authenticator 2FA codes in under 30 seconds often without permissions.
0
0
0
@natashenka
Natalie Silvanovich
2 months
Serious bugs often occur in third-party components integrated by other software. @ifsecure and I found this vulnerability in the Dolby Unified Decoder. It affects Android, iOS and Windows among other platforms, sometimes 0-click. https://t.co/LchMIdKP0P
7
66
271
@imdadvs
Imdad
10 months
DeepSeek-R1 mirrors human thought, learning from trial and error, reflecting on mistakes, and breaking down problems like we do. It's AI with human-like reasoning.
0
0
1
@imdadvs
Imdad
11 months
Dream big, no matter what it is. The human brain possesses remarkable neuroplasticity, enabling it to adapt, learn, and achieve what you consistently focus on and work toward.
0
0
1
@imdadvs
Imdad
4 years
Hey @ZALORA I have ordered some items. It was estimated to be delivered today. But looks like your support is not responding and there is no update on the item. Been following for a week now. Help!
0
0
1
@infosec_au
shubs
4 years
1/10 - I've been doing offensive security source code review for a long time now, and along the way I've learnt a lot of lessons that can make you more effective. Some of them include:
30
388
1K
@mishadavinci
Misha
4 years
To succeed in the future, you MUST learn web3. Here's a list of 24 top resources to get up to speed (for free):
621
8K
32K
@MobileHackingES
Mobile Hacking Space
4 years
🚨 ¡LARGAMOS! 🚀 Aprendé cómo explotar webviews junto a @imdadvs y @shiv__sahni en Apollo 12 en la #Eko2021 👏 🚨 NOW! Join @imdadvs & @shiv__sahni on Apollo 12 at @ekoparty to learn common webview related security issues & the story behind CVE-2021-21136 🔥 EN✅ | ES❌
0
4
6
@MobileHackingES
Mobile Hacking Space
4 years
📢 In this @ekoparty talk, Imdadullah Mohammed (@imdadvs) & Shiv Sahni (@shiv__sahni) will discuss common webview related security issues & how they discovered CVE-2021-21136 🔥 which allowed sensitive data leakage to 3rd parties via HTTP request headers. Join us at #Eko2021! 🙌
1
4
12
@fb_engineering
Engineering at Meta
4 years
Mariana Trench is an open source static analyzer written to detect and prevent security issues in #Android and #Java applications. It can review large codebases, provide feedback to engineers, and detect bugs before they are introduced into a codebase.
Tweet card summary image
engineering.fb.com
We’re sharing details about Mariana Trench (MT), a tool we use to spot and prevent security and privacy bugs in Android and Java applications. As part of our effort to help scale security through b…
15
37
114
@FCE365
GeoSn0w
4 years
iOS 14.7.1 / 14.6 / 14.4 #JAILBREAK News: RELEASE Of New XNU Vulnerability PoC (Open Source Code) VIDEO HERE: https://t.co/OtK3MVwkIC In a previous video, I said this will be released and it's now finally out. It's a bug reachable from the Sandbox and works on 14.7.1 and lower.
30
49
272
@BarcelonaBsides
BSides Barcelona
4 years
Webview: An in-app Web Browser created to ensure seamless user experience without context switching between browser and mobile application. How secure is that? Ask CVE:2021-21136 and @imdadvs at #BSidesBCN21 SagradaFamilia track on Sept 30 at 4.45pm CEST
0
2
5
@mehimansu
Himanshu Kumar Das
4 years
building a new reconnaissance platform? I have attempted to gather most of the open source tool-set into a mind-map. You might refer this XMind: https://t.co/oSw70uA4C1 . Other file-types: https://t.co/hRVU7Phcah #recon #asm #monitoring #bugbounty
Tweet card summary image
github.com
Recon as a Platform. Contribute to himanshudas/RaaP development by creating an account on GitHub.
0
22
60
@imdadvs
Imdad
4 years
1hr to go! Catch us live talking about “Securing Webviews and The Story Behind CVE-2021–21136” at @HITBSecConf https://t.co/DEGN6Lkfzv #hitb #mobilesecurity #infosec #appsec #cybersecurity #HITB2021SIN Join us at 3pm SGT!!
0
2
1
@shiv__sahni
Shiv Sahni
4 years
Very happy to announce that I’ll be speaking at HITB2021SIN @HITBSecConf along with @imdadvs on Securing Webviews and the Story Behind CVE-2021-21136! Join us on Friday, 27 Aug 3:00 PM SGT!! #hitb #mobilesecurity #infosec #appsec #cybersecurity #HITB2021SIN
0
3
3
@kmkz_security
kmkz
4 years
Writing an iOS Kernel Exploit from Scratch https://t.co/EZZWXGjV1i
2
171
559
@imdadvs
Imdad
4 years
I along with @shiv__sahni will be presenting our talk "Securing Webviews and The Story Behind CVE-2021–21136" at #HITB2021SIN on 27th Aug. #MobileSecurity https://t.co/3I4YXwTKCN
@HITBSecConf
HITBSecConf
4 years
#HITB2021SIN Securing Webviews and The Story Behind CVE-2021–21136 - Imdadullah Mohammed & Shiv Sahni -
0
9
6
@ZecOps
ZecOps - A Jamf Company
4 years
Meet WiFiDemon: iOS WiFi RCE 0-Day Vulnerability & a 'Zero-Click' Vulnerability That was Silently Patched
Tweet card summary image
jamf.com
15
234
545
@imdadvs
Imdad
4 years
My recent Google Chromium bug in Android webview is now disclosed: https://t.co/NFGLtxW6g2 #infosec #cybersecurity #security #google #android #zeroday #mobileappsecurity
0
3
1
@mrcatacroquer
Manu
5 years
Hello world! I want to share with you a device I made, its name is "Yayagram", a machine that helps our beloved elders to keep communicating with their grandchildren . How? Let me open a thread to give you all the details of this contraption.
249
3K
11K