#pwn2own — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #pwn2own, aggregated by home.social.
-
A Windows HTTP.sys vulnerability, CVE-2026-62735 (CVSS 7.8), now has public details and a PoC. It escalates local users to SYSTEM. Patch now.
#Windows #HTTPsys #CVE202662735 #PrivilegeEscalation #Pwn2Own #SYSTEM #Infosec #PoC
-
A Windows HTTP.sys vulnerability, CVE-2026-62735 (CVSS 7.8), now has public details and a PoC. It escalates local users to SYSTEM. Patch now.
#Windows #HTTPsys #CVE202662735 #PrivilegeEscalation #Pwn2Own #SYSTEM #Infosec #PoC
-
A Windows HTTP.sys vulnerability, CVE-2026-62735 (CVSS 7.8), now has public details and a PoC. It escalates local users to SYSTEM. Patch now.
#Windows #HTTPsys #CVE202662735 #PrivilegeEscalation #Pwn2Own #SYSTEM #Infosec #PoC
-
A Windows HTTP.sys vulnerability, CVE-2026-62735 (CVSS 7.8), now has public details and a PoC. It escalates local users to SYSTEM. Patch now.
#Windows #HTTPsys #CVE202662735 #PrivilegeEscalation #Pwn2Own #SYSTEM #Infosec #PoC
-
Security researchers released technical details and PoC code for CVE-2026-62911, a critical Exchange Server pre-auth RCE flaw.
-
Security researchers released technical details and PoC code for CVE-2026-62911, a critical Exchange Server pre-auth RCE flaw.
-
Security researchers released technical details and PoC code for CVE-2026-62911, a critical Exchange Server pre-auth RCE flaw.
-
Security researchers released technical details and PoC code for CVE-2026-62911, a critical Exchange Server pre-auth RCE flaw.
-
On Thursday September 24, Xint researcher Yves Bieri will present at BruCon on the successful exploit chain he and the team at Compass Security executed at #pwn2own to gain root access to Home Assistant.
Check out the full event agenda, including his session, at:
https://www.brucon.org/ -
On Thursday September 24, Xint researcher Yves Bieri will present at BruCon on the successful exploit chain he and the team at Compass Security executed at #pwn2own to gain root access to Home Assistant.
Check out the full event agenda, including his session, at:
https://www.brucon.org/ -
On Thursday September 24, Xint researcher Yves Bieri will present at BruCon on the successful exploit chain he and the team at Compass Security executed at #pwn2own to gain root access to Home Assistant.
Check out the full event agenda, including his session, at:
https://www.brucon.org/ -
#Pwn2Own Ireland returns for 2026! We've got lot's of targets and plan on lot's of good times on the Emerald Isle. We've got a new registration process, so please read the rules carefully to know what to expect. Check it out at https://www.zerodayinitiative.com/blog/2026/7/21/pwn2own-ireland-2026-new-targets-and-categories #P2OIreland
-
#Pwn2Own Ireland returns for 2026! We've got lot's of targets and plan on lot's of good times on the Emerald Isle. We've got a new registration process, so please read the rules carefully to know what to expect. Check it out at https://www.zerodayinitiative.com/blog/2026/7/21/pwn2own-ireland-2026-new-targets-and-categories #P2OIreland
-
#Pwn2Own Ireland returns for 2026! We've got lot's of targets and plan on lot's of good times on the Emerald Isle. We've got a new registration process, so please read the rules carefully to know what to expect. Check it out at https://www.zerodayinitiative.com/blog/2026/7/21/pwn2own-ireland-2026-new-targets-and-categories #P2OIreland
-
#Pwn2Own Ireland returns for 2026! We've got lot's of targets and plan on lot's of good times on the Emerald Isle. We've got a new registration process, so please read the rules carefully to know what to expect. Check it out at https://www.zerodayinitiative.com/blog/2026/7/21/pwn2own-ireland-2026-new-targets-and-categories #P2OIreland
-
#Pwn2Own Ireland returns for 2026! We've got lot's of targets and plan on lot's of good times on the Emerald Isle. We've got a new registration process, so please read the rules carefully to know what to expect. Check it out at https://www.zerodayinitiative.com/blog/2026/7/21/pwn2own-ireland-2026-new-targets-and-categories #P2OIreland
-
BBC News | Champion ethical hacker warns AI tools like Mythos will make competing harder
AI generated summary, Read the full article for complete information.
Champion ethical hacker Valentina Palmiotti, known as “Chompie,” won the 2024 Pwn2Own Berlin competition by exploiting systems for prize money, but she warns that powerful new AI tools such as Anthropic’s Claude Mythos could soon make human‑only hacking contests impractical. While AI assistants like Claude Code currently help her and other researchers work faster, the emergence of more advanced models promises to automate many “lower‑hanging‑fruit” bugs, leaving only the very best hackers able to discover novel vulnerabilities. Fellow champion Orange Tsai sees AI as a useful research aid that can free up time but believes human creativity will still be essential. Both experts agree that if AI‑driven tools are responsibly released to defenders, they could tilt the balance against offensive hackers, though criminals are already experimenting with AI to accelerate attacks. The overall sentiment is that AI will raise the bar for security research, benefitting defenders while making traditional bug‑bounty hunting increasingly challenging.
Read more: https://www.bbc.com/news/articles/c3r2zjpryzro?at_medium=RSS&at_campaign=rss
-
🕵🏻♂️ [InfoSec MASHUP] 21/2026 - The Supply Chain Didn't Break. It Was Walked.
This week's issue reads like a case study in cascade failure. A malicious VS Code extension on one #GitHub employee's device leads to 3,800 internal repositories exfiltrated — by #TeamPCP, the same group that poisoned 170 npm and #PyPI packages last week. #Grafana gets breached via a token nobody rotated after the TanStack attack, itself a TeamPCP operation. A GitHub Action used by thousands of projects gets compromised and starts exfiltrating CI/CD credentials. And somewhere in a public GitHub spreadsheet, CISA contractor credentials — including #AWS GovCloud keys — sat waiting to be found.
These aren't four separate incidents. They're one incident with four manifestations. The supply chain isn't a vector anymore; it's the terrain. Developer tooling, CI/CD pipelines, third-party actions, tokens issued and forgotten — all of it is now actively mapped and exploited with a persistence that makes the traditional "patch and move on" response look quaint. The Verizon DBIR dropped this week noting that third-party compromise is surging. The week's news was already illustrating the point before the report landed.
→ Week #21/2026 also covers: fast16 predated #Stuxnet and corrupted nuclear simulations quietly, #Pwn2Own Berlin paid $1.3M for 47 bugs, and #Bluesky got hijacked for Russian propaganda.
Full issue 👉 https://infosec-mashup.santolaria.net/p/infosec-mashup-21-2026-the-supply-chain-didn-t-break-it-was-walked
If you find it useful, subscribe to get it in your inbox every weekend 📨 #infosecMASHUP #cybersecurity #infosec #threatintel #AI
-
🕵🏻♂️ [InfoSec MASHUP] 21/2026 - The Supply Chain Didn't Break. It Was Walked.
This week's issue reads like a case study in cascade failure. A malicious VS Code extension on one #GitHub employee's device leads to 3,800 internal repositories exfiltrated — by #TeamPCP, the same group that poisoned 170 npm and #PyPI packages last week. #Grafana gets breached via a token nobody rotated after the TanStack attack, itself a TeamPCP operation. A GitHub Action used by thousands of projects gets compromised and starts exfiltrating CI/CD credentials. And somewhere in a public GitHub spreadsheet, CISA contractor credentials — including #AWS GovCloud keys — sat waiting to be found.
These aren't four separate incidents. They're one incident with four manifestations. The supply chain isn't a vector anymore; it's the terrain. Developer tooling, CI/CD pipelines, third-party actions, tokens issued and forgotten — all of it is now actively mapped and exploited with a persistence that makes the traditional "patch and move on" response look quaint. The Verizon DBIR dropped this week noting that third-party compromise is surging. The week's news was already illustrating the point before the report landed.
→ Week #21/2026 also covers: fast16 predated #Stuxnet and corrupted nuclear simulations quietly, #Pwn2Own Berlin paid $1.3M for 47 bugs, and #Bluesky got hijacked for Russian propaganda.
Full issue 👉 https://infosec-mashup.santolaria.net/p/infosec-mashup-21-2026-the-supply-chain-didn-t-break-it-was-walked
If you find it useful, subscribe to get it in your inbox every weekend 📨 #infosecMASHUP #cybersecurity #infosec #threatintel #AI
-
🕵🏻♂️ [InfoSec MASHUP] 21/2026 - The Supply Chain Didn't Break. It Was Walked.
This week's issue reads like a case study in cascade failure. A malicious VS Code extension on one #GitHub employee's device leads to 3,800 internal repositories exfiltrated — by #TeamPCP, the same group that poisoned 170 npm and #PyPI packages last week. #Grafana gets breached via a token nobody rotated after the TanStack attack, itself a TeamPCP operation. A GitHub Action used by thousands of projects gets compromised and starts exfiltrating CI/CD credentials. And somewhere in a public GitHub spreadsheet, CISA contractor credentials — including #AWS GovCloud keys — sat waiting to be found.
These aren't four separate incidents. They're one incident with four manifestations. The supply chain isn't a vector anymore; it's the terrain. Developer tooling, CI/CD pipelines, third-party actions, tokens issued and forgotten — all of it is now actively mapped and exploited with a persistence that makes the traditional "patch and move on" response look quaint. The Verizon DBIR dropped this week noting that third-party compromise is surging. The week's news was already illustrating the point before the report landed.
→ Week #21/2026 also covers: fast16 predated #Stuxnet and corrupted nuclear simulations quietly, #Pwn2Own Berlin paid $1.3M for 47 bugs, and #Bluesky got hijacked for Russian propaganda.
Full issue 👉 https://infosec-mashup.santolaria.net/p/infosec-mashup-21-2026-the-supply-chain-didn-t-break-it-was-walked
If you find it useful, subscribe to get it in your inbox every weekend 📨 #infosecMASHUP #cybersecurity #infosec #threatintel #AI
-
🕵🏻♂️ [InfoSec MASHUP] 21/2026 - The Supply Chain Didn't Break. It Was Walked.
This week's issue reads like a case study in cascade failure. A malicious VS Code extension on one #GitHub employee's device leads to 3,800 internal repositories exfiltrated — by #TeamPCP, the same group that poisoned 170 npm and #PyPI packages last week. #Grafana gets breached via a token nobody rotated after the TanStack attack, itself a TeamPCP operation. A GitHub Action used by thousands of projects gets compromised and starts exfiltrating CI/CD credentials. And somewhere in a public GitHub spreadsheet, CISA contractor credentials — including #AWS GovCloud keys — sat waiting to be found.
These aren't four separate incidents. They're one incident with four manifestations. The supply chain isn't a vector anymore; it's the terrain. Developer tooling, CI/CD pipelines, third-party actions, tokens issued and forgotten — all of it is now actively mapped and exploited with a persistence that makes the traditional "patch and move on" response look quaint. The Verizon DBIR dropped this week noting that third-party compromise is surging. The week's news was already illustrating the point before the report landed.
→ Week #21/2026 also covers: fast16 predated #Stuxnet and corrupted nuclear simulations quietly, #Pwn2Own Berlin paid $1.3M for 47 bugs, and #Bluesky got hijacked for Russian propaganda.
Full issue 👉 https://infosec-mashup.santolaria.net/p/infosec-mashup-21-2026-the-supply-chain-didn-t-break-it-was-walked
If you find it useful, subscribe to get it in your inbox every weekend 📨 #infosecMASHUP #cybersecurity #infosec #threatintel #AI
-
🕵🏻♂️ [InfoSec MASHUP] 21/2026 - The Supply Chain Didn't Break. It Was Walked.
This week's issue reads like a case study in cascade failure. A malicious VS Code extension on one #GitHub employee's device leads to 3,800 internal repositories exfiltrated — by #TeamPCP, the same group that poisoned 170 npm and #PyPI packages last week. #Grafana gets breached via a token nobody rotated after the TanStack attack, itself a TeamPCP operation. A GitHub Action used by thousands of projects gets compromised and starts exfiltrating CI/CD credentials. And somewhere in a public GitHub spreadsheet, CISA contractor credentials — including #AWS GovCloud keys — sat waiting to be found.
These aren't four separate incidents. They're one incident with four manifestations. The supply chain isn't a vector anymore; it's the terrain. Developer tooling, CI/CD pipelines, third-party actions, tokens issued and forgotten — all of it is now actively mapped and exploited with a persistence that makes the traditional "patch and move on" response look quaint. The Verizon DBIR dropped this week noting that third-party compromise is surging. The week's news was already illustrating the point before the report landed.
→ Week #21/2026 also covers: fast16 predated #Stuxnet and corrupted nuclear simulations quietly, #Pwn2Own Berlin paid $1.3M for 47 bugs, and #Bluesky got hijacked for Russian propaganda.
Full issue 👉 https://infosec-mashup.santolaria.net/p/infosec-mashup-21-2026-the-supply-chain-didn-t-break-it-was-walked
If you find it useful, subscribe to get it in your inbox every weekend 📨 #infosecMASHUP #cybersecurity #infosec #threatintel #AI
-
https://www.europesays.com/dk/86835/ Pwn2Own Berlin 2026, Day Three: DEVCORE Crowned Master of Pwn, $1.298 Million Total #berlin #Germany #Hacking #HackingNews #InformationSecurityNews #ITInformationSecurity #PierluigiPaganini #Pwn2Own #Pwn2OwnBerlin2026 #SecurityAffairs #SecurityNews
-
📢 Pwn2Own Berlin 2026 : 47 zero-days exploités, 1,298,250 $ de récompenses
📝 ## 🏆 ContexteSource : BleepingComputer, publié le 18 mai 2026.
📖 cyberveille : https://cyberveille.ch/posts/2026-05-19-pwn2own-berlin-2026-47-zero-days-exploites-1298250-de-recompenses/
🌐 source : https://www.bleepingcomputer.com/news/security/hackers-earn-1-298-250-for-47-zero-days-at-pwn2own-berlin-2026/
#Pwn2Own #TTP #Cyberveille -
Cybersecurity researchers successfully demonstrated 47 unique zero-day exploits at #Pwn2Own Berlin 2026, targeting major enterprise software and AI platforms.
Read: https://hackread.com/pwn2own-berlin-2026-closes-zero-day-payouts/
-
Cybersecurity researchers successfully demonstrated 47 unique zero-day exploits at #Pwn2Own Berlin 2026, targeting major enterprise software and AI platforms.
Read: https://hackread.com/pwn2own-berlin-2026-closes-zero-day-payouts/
-
Cybersecurity researchers successfully demonstrated 47 unique zero-day exploits at #Pwn2Own Berlin 2026, targeting major enterprise software and AI platforms.
Read: https://hackread.com/pwn2own-berlin-2026-closes-zero-day-payouts/
-
Cybersecurity researchers successfully demonstrated 47 unique zero-day exploits at #Pwn2Own Berlin 2026, targeting major enterprise software and AI platforms.
Read: https://hackread.com/pwn2own-berlin-2026-closes-zero-day-payouts/
-
Cybersecurity researchers successfully demonstrated 47 unique zero-day exploits at #Pwn2Own Berlin 2026, targeting major enterprise software and AI platforms.
Read: https://hackread.com/pwn2own-berlin-2026-closes-zero-day-payouts/
-
🔥 Pwn2Own Berlin 2026 ends with:
💰 $1.29M awarded
⚠️ 47 zero-days exploited
🎯 Microsoft Exchange, Windows 11, VMware ESXi, AI coding agents, Red Hat Linux all successfully hacked.
Enterprise + AI attack surfaces keep expanding.Follow @technadu for more.
-
🔥 Pwn2Own Berlin 2026 ends with:
💰 $1.29M awarded
⚠️ 47 zero-days exploited
🎯 Microsoft Exchange, Windows 11, VMware ESXi, AI coding agents, Red Hat Linux all successfully hacked.
Enterprise + AI attack surfaces keep expanding.Follow @technadu for more.
-
🔥 Pwn2Own Berlin 2026 ends with:
💰 $1.29M awarded
⚠️ 47 zero-days exploited
🎯 Microsoft Exchange, Windows 11, VMware ESXi, AI coding agents, Red Hat Linux all successfully hacked.
Enterprise + AI attack surfaces keep expanding.Follow @technadu for more.
-
🔥 Pwn2Own Berlin 2026 ends with:
💰 $1.29M awarded
⚠️ 47 zero-days exploited
🎯 Microsoft Exchange, Windows 11, VMware ESXi, AI coding agents, Red Hat Linux all successfully hacked.
Enterprise + AI attack surfaces keep expanding.Follow @technadu for more.
-
Rekordverdächtiges Preisgeld und Exchange-#Zeroday auf der #Pwn2Own 2026 | Security https://www.heise.de/news/Millionen-Preisgeld-und-Exchange-Exploit-So-war-die-Pwn2Own-2026-11297824.html #exploit #Hacking
-
Rekordverdächtiges Preisgeld und Exchange-#Zeroday auf der #Pwn2Own 2026 | Security https://www.heise.de/news/Millionen-Preisgeld-und-Exchange-Exploit-So-war-die-Pwn2Own-2026-11297824.html #exploit #Hacking
-
Rekordverdächtiges Preisgeld und Exchange-#Zeroday auf der #Pwn2Own 2026 | Security https://www.heise.de/news/Millionen-Preisgeld-und-Exchange-Exploit-So-war-die-Pwn2Own-2026-11297824.html #exploit #Hacking
-
Rekordverdächtiges Preisgeld und Exchange-#Zeroday auf der #Pwn2Own 2026 | Security https://www.heise.de/news/Millionen-Preisgeld-und-Exchange-Exploit-So-war-die-Pwn2Own-2026-11297824.html #exploit #Hacking
-
📰 Pwn2Own Berlin 2026 Concludes with $1.3M Awarded for 47 Zero-Days in Enterprise Software
🏆 Pwn2Own Berlin 2026 ends with nearly $1.3M paid for 47 zero-days! DEVCORE crowned 'Master of Pwn' after epic exploits against Exchange & SharePoint. Patches from major vendors are on the way. #Pwn2Own #ZeroDay #CyberSecurity #Hacking
🌐 cyber[.]netsecops[.]io
-
📰 Pwn2Own Berlin 2026 Concludes with $1.3M Awarded for 47 Zero-Days in Enterprise Software
🏆 Pwn2Own Berlin 2026 ends with nearly $1.3M paid for 47 zero-days! DEVCORE crowned 'Master of Pwn' after epic exploits against Exchange & SharePoint. Patches from major vendors are on the way. #Pwn2Own #ZeroDay #CyberSecurity #Hacking
🌐 cyber[.]netsecops[.]io
-
🛡️ Pwn2Own Berlino si chiude con 47 falle scoperte: un promemoria sul costo della sicurezza e sul valore della ricerca etica. #Cybersecurity #Pwn2Own
🔗 https://www.tomshw.it/hardware/pwn2own-berlino-47-falle-premi
-
🛡️ Pwn2Own Berlino si chiude con 47 falle scoperte: un promemoria sul costo della sicurezza e sul valore della ricerca etica. #Cybersecurity #Pwn2Own
🔗 https://www.tomshw.it/hardware/pwn2own-berlino-47-falle-premi
-
🛡️ Pwn2Own Berlino si chiude con 47 falle scoperte: un promemoria sul costo della sicurezza e sul valore della ricerca etica. #Cybersecurity #Pwn2Own
🔗 https://www.tomshw.it/hardware/pwn2own-berlino-47-falle-premi
-
At #Pwn2Own Berlin 2026, #whitehat #hackers earned $1,298,250 for exploiting #vulnerabilities in #Windows, #Linux, #VMware, #Nvidia, and #AI products. Devcore and StarLabs SG won the highest payouts, while Out Of Bounds placed third. https://www.securityweek.com/hackers-earn-1-3-million-at-pwn2own-berlin-2026/?eicker.news #tech #media #news
-
At #Pwn2Own Berlin 2026, #whitehat #hackers earned $1,298,250 for exploiting #vulnerabilities in #Windows, #Linux, #VMware, #Nvidia, and #AI products. Devcore and StarLabs SG won the highest payouts, while Out Of Bounds placed third. https://www.securityweek.com/hackers-earn-1-3-million-at-pwn2own-berlin-2026/?eicker.news #tech #media #news
-
At #Pwn2Own Berlin 2026, #whitehat #hackers earned $1,298,250 for exploiting #vulnerabilities in #Windows, #Linux, #VMware, #Nvidia, and #AI products. Devcore and StarLabs SG won the highest payouts, while Out Of Bounds placed third. https://www.securityweek.com/hackers-earn-1-3-million-at-pwn2own-berlin-2026/?eicker.news #tech #media #news
-
At #Pwn2Own Berlin 2026, #whitehat #hackers earned $1,298,250 for exploiting #vulnerabilities in #Windows, #Linux, #VMware, #Nvidia, and #AI products. Devcore and StarLabs SG won the highest payouts, while Out Of Bounds placed third. https://www.securityweek.com/hackers-earn-1-3-million-at-pwn2own-berlin-2026/?eicker.news #tech #media #news
-
At #Pwn2Own Berlin 2026, #whitehat #hackers earned $1,298,250 for exploiting #vulnerabilities in #Windows, #Linux, #VMware, #Nvidia, and #AI products. Devcore and StarLabs SG won the highest payouts, while Out Of Bounds placed third. https://www.securityweek.com/hackers-earn-1-3-million-at-pwn2own-berlin-2026/?eicker.news #tech #media #news
-
https://www.europesays.com/dk/84794/ Hackers Earn $1.3 Million at Pwn2Own Berlin 2026 #berlin #exploit #Featured #Germany #HackingContest #Pwn2Own #Pwn2OwnBerlin
-
Pwn2Own Berlin 2026: 47 MEDIUM severity exploits demoed on Windows, Linux, VMware, Nvidia & AI platforms 🛡️. Highlights: Microsoft Exchange RCE, VMware ESX cross-tenant code exec. No active wild exploitation yet. Monitor vendor patches. https://radar.offseq.com/threat/hackers-earn-13-million-at-pwn2own-berlin-2026-38fcb028 #OffSeq #Pwn2Own #Infosec
-
Pwn2Own Berlin 2026: 47 MEDIUM severity exploits demoed on Windows, Linux, VMware, Nvidia & AI platforms 🛡️. Highlights: Microsoft Exchange RCE, VMware ESX cross-tenant code exec. No active wild exploitation yet. Monitor vendor patches. https://radar.offseq.com/threat/hackers-earn-13-million-at-pwn2own-berlin-2026-38fcb028 #OffSeq #Pwn2Own #Infosec
-
Pwn2Own Berlin 2026: 47 MEDIUM severity exploits demoed on Windows, Linux, VMware, Nvidia & AI platforms 🛡️. Highlights: Microsoft Exchange RCE, VMware ESX cross-tenant code exec. No active wild exploitation yet. Monitor vendor patches. https://radar.offseq.com/threat/hackers-earn-13-million-at-pwn2own-berlin-2026-38fcb028 #OffSeq #Pwn2Own #Infosec
-
Pwn2Own Berlin 2026: 47 MEDIUM severity exploits demoed on Windows, Linux, VMware, Nvidia & AI platforms 🛡️. Highlights: Microsoft Exchange RCE, VMware ESX cross-tenant code exec. No active wild exploitation yet. Monitor vendor patches. https://radar.offseq.com/threat/hackers-earn-13-million-at-pwn2own-berlin-2026-38fcb028 #OffSeq #Pwn2Own #Infosec
-
RE: https://infosec.exchange/@thezdi/116585566164605071
* Seems many of the Browser exploits couldn't be demoed due to bad luck/last-minute fixes. Really sorry for the participants :( great research!
* No V8 (and Chrome?) submissions for the 2nd year in a row
* Orange's Edge chain sounds wild, very curious for details!
Thanks for running #Pwn2Own @thezdi -
RE: https://infosec.exchange/@thezdi/116585566164605071
* Seems many of the Browser exploits couldn't be demoed due to bad luck/last-minute fixes. Really sorry for the participants :( great research!
* No V8 (and Chrome?) submissions for the 2nd year in a row
* Orange's Edge chain sounds wild, very curious for details!
Thanks for running #Pwn2Own @thezdi -
RE: https://infosec.exchange/@thezdi/116585566164605071
* Seems many of the Browser exploits couldn't be demoed due to bad luck/last-minute fixes. Really sorry for the participants :( great research!
* No V8 (and Chrome?) submissions for the 2nd year in a row
* Orange's Edge chain sounds wild, very curious for details!
Thanks for running #Pwn2Own @thezdi -
RE: https://infosec.exchange/@thezdi/116585566164605071
* Seems many of the Browser exploits couldn't be demoed due to bad luck/last-minute fixes. Really sorry for the participants :( great research!
* No V8 (and Chrome?) submissions for the 2nd year in a row
* Orange's Edge chain sounds wild, very curious for details!
Thanks for running #Pwn2Own @thezdi