Post #955
125
hypervisor escape exploits are rare and interesting (tweet is just a teaser but we'll see)
https://x.com/osec_io/status/2029643325125390550?s=46
X (formerly Twitter) OtterSec (@osec_io) on X We recently achieved guest-to-host escape by exploiting a QEMU 0day.
We’ll share details on a new technique leveraging the latest glibc allocator behavior and what we believe is a novel QEMU-specific heap spray/RIP-control primitive.
Writeup coming next… https://x.com/osec_io/status/2029643325125390550?s=46
- 👾 2



