@BlackHatOfficialYT
  @BlackHatOfficialYT
Black Hat | Bad io_uring: A New Era of Rooting for Android @BlackHatOfficialYT | Uploaded 8 months ago | Updated 4 hours ago
io_uring is a high-performance asynchronous I/O framework that was introduced in version 5.1 of the Linux kernel. Since its introduction, more than 100 vulnerabilities have been discovered in this subsystem. While there is extensive public exploitation against io_uring bugs in desktop Linux, no public research has targeted it in the Android kernel due to its strict restrictions on memory layout manipulation.

During this talk, we will detail our approach to achieving privilege escalation on Google Pixel 6 and Samsung S22 via CVE-2022-20409, a UAF io_uring bug...

By: Zhaofeng Chen , Kang Li , Zhenpeng Lin , Xinyu Xing

Full Abstract and Presentation Materials: blackhat.com/us-23/briefings/schedule/#bad-io_uring-a-new-era-of-rooting-for-android-32243
Bad io_uring: A New Era of Rooting for AndroidBlack Hat USA 2024 HighlightsA Q&A with a16zs Zane Lackey: Unlocking the Secrets of Cybersecurity EntrepreneurshipLost Control-Breaking Hardware-Assisted Kernel Control-Flow Integrity with Page-Oriented ProgrammingMoustachedBouncer: AitM-Powered Surveillance via Belarus ISPsUnveiling the Cracks in Virtualization, Mastering the Host System VMware Workstation EscapeDiversity Microtalks: Perspectives on Creating ChangeTsuKing: Coordinating DNS Resolvers and Queries into Potent DoS AmplifiersThe Integration Cyber Security and Insurance: The Journey of CysuranceLifting the Fog of War - Monitoring, Identifying and Mitigating MS-RPC Based ThreatsVulnerabilities in Old Third-Party Software Components- Importance of Having SBoM for IoT/OT DevicesReviving JIT Vulnerabilities: Unleashing the Power of Maglev Compiler Bugs on Chrome Browser

Bad io_uring: A New Era of Rooting for Android @BlackHatOfficialYT

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER