Boris Larin
oct0xor@mastodon.social
<p>Reverse engineer / 0-days hunter at Kaspersky GReAT</p>
Posts
-
Post #1814087
We managed to find this 0-day twice! First as a description of a vulnerability, then as a real exploit used by attackers. https://securelist.com/cve-2024-30051/112618/
-
Post #1814086
I&#39;m getting dopamine from this guy /cc @opa334
-
Post #1814084
We have discovered a new Google Chrome 0-day that is being used in targeted attacks to deliver sophisticated spyware 🔥🔥🔥. It was just fixed as CVE-2025-2783 and we are revealing the first details about it and “Operation ForumTroll” https://securelist.com/operation-forumtroll/115989/
-
Post #1814083
The root cause of the Chrome 0-day logical vulnerability CVE-2025-2783, which we discovered used in attacks with sophisticated malware, also affects the Firefox! New CVE-2025-2857 has just been fixed in Firefox 136.0.4 https://www.mozilla.org/en-US/security/advisories/mfsa2025-19/
-
Post #1814081
I don&#39;t know what I feel more: amazement at how good these AI-generated images look, or disgust at the ethics and behavior of the people behind this technology.
-
Post #1814079
In Thailand, or more precisely in Patang in Phuket, a very crazy tourist place, on the way to the hospital with a suspected bone fracture, I realized what I hate the most - Songkran
-
Post #1814077
The HackingTeam is back! New name, new malware, new exploits https://securelist.com/forumtroll-apt-hacking-team-dante-spyware/117851/
-
Post #1814074
We analyzed the Coruna exploit kit and found intriguing code overlaps with Operation Triangulation https://securelist.com/coruna-framework-updated-operation-triangulation-exploit/119228/