TGViewer
mhmrdd mhmrdd @mhm72dd · 6.41K subscribers
Post #300 3.24K
mhmrdd I have managed internally to weaponize this over to RCE, we'd expect in future to see full exploit that allows to change bootloader status to lock when unlocked on any device running Qualcomm QSEE with a vulnerable keymaster. The same exploit can be utilized…
preview 🪾 🍖
exp was finished today, I am currently investigating an issue causing the change of locked status to swap slots which loses decryption of storage keys temporarily.
  • ❤‍🔥 19
  • 👍 4
  • ❤ 3
  • 👎 2
  • 🔥 2
More from @mhm72dd
  1. Oct 7, 2026https://x.com/0xor0ne/status/2107848947557355769
  2. Sep 29, 2026HeapSnitch>> med sev?
  3. Sep 29, 2026I managed to internally use HeapSnitch (modified) vulnerability in QSEE to extract UDS As…
  4. Sep 29, 2026video post
  5. Sep 29, 2026Update: -Adapted HeapSnitch to work on post-boot after vold CE storage decryption is compl…
  6. Sep 27, 2026photo post
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →