1. X
  2. 3ndy1
Log inSign up
3ndy1
82 posts
user avatar
3ndy1
@_3ndy1
A real 菜鸡 & 倒霉蛋
China
Joined April 2020
251
Following
277
Followers
RepliesRepliesMediaMedia
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

  • user avatar
    3ndy1
    @_3ndy1
    Apr 7, 2022
    According to @patch1t 's recent tweet, I found that CVE-2022-22675 which exists in AVC_RBSP::parseHRD is an oob-write vuln I also found early last year (Yes, it's a bug collision😞), but it's not the only bug I discovered in the decode rountine of AVC_RBSP.
  • user avatar
    3ndy1
    @_3ndy1
    Jan 27, 2022
    Had succeeded in using my kernel read/write primitive to achieve privilege elevation on macOS 12.1 prior to the release of macOS 12.2. The exploit code can work in many sandboxed context (apps, WebContent, etc.), but the vuln doesn't exist on iOS.
    00:00
  • user avatar
    3ndy1
    @_3ndy1
    Jan 13, 2022
    Damn zalloc_ro()🤡
  • user avatar
    3ndy1
    @_3ndy1
    Oct 28, 2021
    Race!Race!!Race!!! I don't know when the Apple addressed this problem which I have found early this year, and I regard it as a coding mistake. So sad😭😭😭