Elektrine lite

← Feed

Ovi

0v1@infosec.exchange

<p>security researcher<br />founder <span class="h-card" translate="no"><a href="https://infosec.exchange/@barghest" class="u-url mention">@<span>barghest</span></a></span><br />{ disrupting APT, authoritarian gov, surveillance, privacy violations &amp; corporate injustice }</p><p>i mostly dump my thoughts here</p>

Posts

  • View post

    CVE-2026-0149

  • View post

    Always hated wordpress

  • View post

    The only thing good about fedcon was meeting friends and CTFs. Now it&#39;s just a meeting place!

  • View post

    Nearly FEDCON time. Beautiful time for corpos and LE to get together and larp as hackers fighting the good fight.

  • View post

    Today we are disclosing CVE-2026-0073: A critical no-interaction proximal/adjacent remote code execution vulnerability in adbd&amp;#39;s ADB-over-TCP authentication path. Full technical write-up + exploit flow: https://barghest.asia/blog/cve-2026-0073-adb-tls-auth-bypass/

  • View post

    amongst bugs this year, i found two bugs in particular that LLMs are just totally failing at finding yet on the surface are super easy. 1 is a critical rce in android and also a high sev persistence chain with it. both resulted from manual code review, no fuzzing (android is so heavily fuzzed anyways) most of my methodology atm is looking for logic bugs in trust boundaries. ones with big topology. for these bugs I been testing opus 4.7 + gpty in finding it, opus has been running on auto mode...

  • View post

    We are mostly not hackers - we are the hacked. &amp;quot;Schneier, a security expert, broadens the category of &amp;quot;hacker&amp;quot; to include anyone who studies systems with an eye to finding and exploiting their defects. Under this definition, the more fearsome hackers are &amp;quot;working for a hedge fund, finding a loophole in financial regulations that lets her siphon extra profits out of the system.&amp;quot; Hackers work in corporate offices, or as government lobbyists. As Henry...