Cow Fault Profile
Cow Fault

@cowfault

Followers
131
Following
137
Statuses
303

Android kernel hacker

Joined November 2022
Don't wanna be here? Send us removal request.
@cowfault
Cow Fault
3 days
This blog post cleared up a bunch of ARM64 caching confusion I had, well worth a read:
0
14
99
@cowfault
Cow Fault
5 days
RT @GrapheneOS: In April 2024, Pixels shipped a partial implementation of our January 2024 proposal for firmware-based reset attack protect…
0
96
0
@cowfault
Cow Fault
6 days
RT @jsrailton: BREAKING: #Paragon reportedly terminates spyware contract with #Italy. Right on heels of reported targeting of journalist &…
0
207
0
@cowfault
Cow Fault
10 days
In Linux terms, this XNU kernel bug is that the cred structure is being modified directly (instead of copied), even though it's accessed-via/protected-by an RCU pointer. This bug in such a core part of the kernel would be unthinkable in Linux, is SMR new?
@0xjprx
Joseph Ravichandran
11 days
CVE-2025-24118 is an absolutely crazy race condition I found in the macOS / XNU kernel. Safe memory reclamation, read-only objects, memcpy implementation details, and a race condition- oh my!
0
0
3
@cowfault
Cow Fault
27 days
RT @Raspberry_Pi: Security through transparency: all chips have vulnerabilities, and most vendors' strategy is not to talk about them. In c…
0
204
0
@cowfault
Cow Fault
28 days
RT @oss_security: rsync: 6 CVEs Two independent groups of researchers identified a total of 6 CVEs in rsync. In the…
0
16
0
@cowfault
Cow Fault
1 month
RT @cgvwzq: very cool security position at Arm:
0
6
0
@cowfault
Cow Fault
1 month
RT @DonnchaC: We've seen others signs that attackers may be exploiting RCS in-the-wild. In December we documented a serious of suspicious m…
0
3
0
@cowfault
Cow Fault
1 month
RT @natashenka: Just unrestricted an issue that shows a fun new attack surface. Android RCS locally transcribes incoming media, making vuln…
0
105
0
@cowfault
Cow Fault
1 month
Huh, TIL AMD have an instruction that can invalidate TLB's on other cores without sending an interrupt to them
@andersonc0d3
Anderson Nascimento
1 month
[PATCH v3 00/12] AMD broadcast TLB invalidation
0
0
4
@cowfault
Cow Fault
1 month
That's a bug class I haven't seen before.
@sha1lan
sha1lan
1 month
"Invariant inversion" in memory-unsafe languages
0
0
0
@cowfault
Cow Fault
1 month
RT @hkashfi: Turns out WhatsApp does NOT have end-to-end encrypted backup enabled by default. Your backups are stored cleartext on cloud, w…
0
79
0
@cowfault
Cow Fault
2 months
RT @spendergrsec: End of 2026 will be interesting, will only be one upstream LTS usable and supported at that point, and it'll be the one t…
0
2
0
@cowfault
Cow Fault
3 months
RT @GrapheneOS: Android 15 QPR2 is moving 6th/7th/8th generation Pixels to the Linux kernel's 6.1 LTS branch already used for 9th generatio…
0
23
0
@cowfault
Cow Fault
3 months
RT @psifertex: @gf_256 Funny you'd mention that...
Tweet media one
0
7
0
@cowfault
Cow Fault
3 months
RT @5aelo: Another big step towards becoming a security boundary: today we’re expanding the VRP for the V8 Sandbox * No longer limited to…
0
40
0
@cowfault
Cow Fault
3 months
If anyone needs me, I'll be rolling around on the floor thinking about exploits.
@pdhsu
Patrick Hsu
3 months
Terry Tao is the ultimate shape rotator
Tweet media one
1
0
0
@cowfault
Cow Fault
4 months
RT @mrexodia: Can You Get Root With Only a Cigarette Lighter? by @David3141593
Tweet media one
0
46
0
@cowfault
Cow Fault
4 months
RT @__sethJenkins: I found an issue in collaboration with Amnesty and TAG that we have indication may be used ITW, CVE-2024-43047. See http…
0
16
0
@cowfault
Cow Fault
4 months
RT @__sethJenkins: Just derestricted 3 more (Fixed!) issues, including a UAF in a driver on Android Qualcomm chipsets. Kudos to Qualcomm fo…
0
13
0