home.social

#pwn2own — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #pwn2own, aggregated by home.social.

  1. Verified! Taisic Yun of Xint used a Improper Input Validation bug along with code injection to get his reverse shell on LiteLLM. He earns $40,000 and 4 Master of Pwn points.

  2. We have our first confirmation of Ireland 2026! @_McCaulay combined an OOB Write and a format string(!) bug to exploit the Era 300. He earns $50,000 and 5 Master of Pwn points.

  3. Whew! It took some reconfiguring and tweaking, but Taisic Yun of Xint successfully got his reverse shell on LiteLLM in the AI category. After exhaling, they head off to the disclosure room to dish the deets.

  4. Boom! Nguyen Thanh Dat of Viettel Cyber Security kicks things off by successfully exploiting the Galaxy S26. He's off to the disclosure room to provide the details.

  5. Unfortunately, Ikotas Labs, Inc. could not get their exploit of the Brother MFC-L8970CDWworking within the time allotted.

  6. Here's what's on tap for the beginning of Ireland

  7. Excited to share that 🇫🇷 Yassine Bengana & Maxence Schmitt 🇫🇷 will be representing at Ireland - targeting the Smart Home category for a total of $30,000 and 3 Master of Pwn points, Wed. Oct. 7 @ 11:15AM

    zerodayinitiative.com/blog/202

  8. Ireland schedule is finalized.
    Team Xint attempts (Ireland time):
    LiteLLM - Tuesday 9:30
    Philipps Hue - Tuesday 18:30
    Home Assistant - Wednesday 9:30
    Oracle AI Database - Wednesday 11:45
    Pixel 10 - Thursday 11:15

    zerodayinitiative.com/blog/202

  9. The full schedule for Ireland 2026 is now live! You can find it at zerodayinitiative.com/blog/202. And check out pwn2own.zerodayinitiative.com/ for live leaderboard updates throughout the day.

Share on Mastodon

Enter the server where you have an account.