Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

Maddie Stone

@maddiestone@infosec.exchange
  • Open on infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

7038 Followers
41 Following
11 Posts
Joined November 04, 2022
Twitter:
https://twitter.com/maddiestone
Website:
https://ragingrock.com

Posts

Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Nov 17, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

🪲 New blog from me, Clem, and Kristen on the Zimbra in-the-wild 0-day, CVE-2023-37580, discovered by TAG in the summer. We discovered 4 different campaigns using the bug against organizations in Greece, Moldova, Tunisia, Vietnam, and Pakistan.

https://blog.google/threat-analysis-group/zimbra-0-day-used-to-target-international-government-organizations/

0
0
11
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Oct 11, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

🔮NEW RCA!! A few hours after it was patched, TAG found an ITW exploit sample for CVE-2023-36802. @benoitsevens@beta.mstdn.cf analyzed it in detail ✨

https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2023/CVE-2023-36802.html

0
0
9
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Sep 07, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

North Korean actors 🇰🇵​ are targeting security researchers again including the use of at least one 0-day. IOCs in blog ⬇️​ If you've been in contact, please reach out

https://blog.google/threat-analysis-group/active-north-korean-campaign-targeting-security-researchers/

0
2
26
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jul 27, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange
Replying to @dave_aitel@mastodon.social
@dave_aitel hahaha yep and did I answer my thoughts on the question? :)
0
1
0
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jul 27, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

@pheonix@fosstodon.org Not a you problem :) We're working on it

https://bugzilla.mozilla.org/show_bug.cgi?id=1845775

0
0
0
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jul 27, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

Google's 2022 Year in Review of in-the-wild 0-days is out! 4 key takeaways:
🤖 N-days function like 0-days on Android
⚡️ 0-clicks and new browser mitigations drive down browser 0-days
👯 Over 40% of itw 0-days are variants
💥 Bug collisions are high

#itw0days

https://security.googleblog.com/2023/07/the-ups-and-downs-of-0-days-year-in.html

0
4
31
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Feb 02, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

🎯 New RCA up for CVE-2022-4135, a Chrome itw 0-day that was patched in November!! The bug was discovered by Clement and the RCA authored by Sergei. #itw0days

https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2022/CVE-2022-4135.html

0
0
6
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jan 20, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

👀 New RCA up for CVE-2022-41033, a type confusion in Windows COM+ Event System Service by @tiraniddo@infosec.exchange !
#itw0days

https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2022/CVE-2022-41033.html

0
0
17
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jan 10, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange
Replying to @AMS@infosec.exchange
@AMS if you're meaning 5-digits for the CVE number, that doesn't mean there has already been 21673 vulnerabilities files. Large organizations like Microsoft, Apple, Google, etc can request batches of CVE numbers that they can assign vulnerabilities to throughout the year.
2
1
0
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Jan 10, 2023
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

First in-the-wild 0-day of 2023 🔥

CVE-2023-21674: Windows ALPC elevation of privilege discovered by Avast

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-21674

All 2023 itw 0-days will be tracked here: https://docs.google.com/spreadsheets/d/1lkNJ0uQwbeC1ZTRrxdtuPLCIl7mlUreoKfSIgajnSyY/edit#gid=1746868651

#itw0days

0
5
55
0
Open post
maddiestone
Maddie Stone @maddiestone@infosec.exchange · Nov 30, 2022
Maddie Stone
@maddiestone@infosec.exchange

Security Researcher at Google Project Zero | 0-days exploited in-the-wild |

infosec.exchange

Hiii! I'm taking 6 weeks off work to rest and recharge so won't be back on here until Jan. This is what I've done with my first week and a half off so far. This project will be on hold for a bit though as it's time for me to go on a surf vacation! 🏄🏽‍♀️​ See you in 2023!

0
4
0
0

Remote instance

infosec.exchange
Open on original server

Media

313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 05:55:37 UTC