Linux Kernel Security
4.28K subscribers
103 photos
334 links
Links related to Linux kernel security and exploitation | Chat @linkersec_chat | @xairy @a13xp0p0v
Download Telegram
Channel created
Channel name was changed to ยซLinux Kernel Securityยป
The existing collection of links related to Linux kernel security and exploitation is here:

https://github.com/xairy/linux-kernel-exploitation

New articles, talks, and other updates will be published as new posts on this channel.
๐Ÿ‘1
Linux Kernel Security pinned ยซThe existing collection of links related to Linux kernel security and exploitation is here: https://github.com/xairy/linux-kernel-exploitation New articles, talks, and other updates will be published as new posts on this channel.ยป
Fuzzing for eBPF JIT bugs in the Linux kernel

By Simon Scannell.

https://scannell.me/fuzzing-for-ebpf-jit-bugs-in-the-linux-kernel/
The Linux eBPF verifier, the gift that keeps on giving

An LPE exploit for CVE-2020-27194.

https://haxx.in/blasty-vs-ebpf.c
kasan: boot parameters for hardware tag-based mode

Patchset, part of the Memory Tagging in production effort.

https://lkml.org/lkml/2020/11/4/1338
๐Ÿ‘1
PLATYPUS: Software-based Power Side-Channel Attacks on x86

Side-channel attack via Intel Running Average Power Limit (RAPL). On Linux RAPL counters are available to unprivileged users, and the attack allows leaking encryption keys from kernel modules and bypassing KASLR.

Info: https://platypusattack.com/
Paper: https://platypusattack.com/platypus.pdf
Fix: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=949dd0104c496fa7c14991a23c03c62e44637e71
๐Ÿ‘1
We now have a chat for comments and discussions: @linkersec_chat
Debugging the Kernel with QEMU by Keith Makan

The first post of a potential upcoming Linux kernel exploitation series. Building and running Linux kernel in QEMU. Debugging a kernel module with GDB.

https://blog.k3170makan.com/2020/11/linux-kernel-exploitation-0x0-debugging.html
๐Ÿ‘1๐Ÿ”ฅ1
Finding and exploiting a bug in an old Android phone

Finding and exploiting a Linux kernel bug in an old Motorola phone. A stream, live right now! By Brandon Falk.

Live: https://www.twitch.tv/gamozo
Part 1: https://www.youtube.com/watch?v=g62FXds2pt8
Part 2: https://www.youtube.com/watch?v=qnyFk-f3Koo
Linux Kernel Bug Fixing Mentorship

Himadri Pandya, a Linux kernel bug fixing mentee, describes their experience with fixing a few USB related Linux kernel bugs.

https://himadripandya.me/post/634481719919165440/linux-kernel-bug-fixing-mentorship