TGViewer
Reverse Dungeon Reverse Dungeon @reverse_dungeon · 5.01K subscribers
Post #4054 1.58K

Forwarded from Linux Kernel Security (Andrey Konovalov)

A 0-click exploit chain for the Pixel 9 Part 2: Cracking the Sandbox with a Big Wave

Article by Seth Jenkins about exploiting a use-after-free in the driver for BigWave — an AV1 decoding hardware component present on Pixel SOCs.

Seth used the bug to escalate privileges from the mediacodec SELinux context and obtain root on Pixel 9.

This exploit is a part of an RCE chain developed by Seth and Natalie Silvanovich.
  • ❤ 1
More from @reverse_dungeon
  1. Sep 30, 2026https://www.manifold.security/blog/third-party-com-placeholder-clickfix
  2. Sep 24, 2026Вспомнилось ! Был такой хороший гайд Introduction to Exploit Development Сегодня он интере…
  3. Sep 20, 2026https://bogdanthegeek.github.io/blog/projects/vapeserver/
  4. Sep 18, 2026Golang loader that uses vulnerable drivers to terminate EDR and antivirus processes before…
  5. Sep 16, 2026www.f6.ru/blog/fmvt-rat
  6. Sep 9, 2026https://hunt.io/blog/redis-cryptomining-botnet-3562-servers TL;DR: Челы из Hunt.io вскрыли…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →