Down the Rabbit-Hole...
Summary
“Sometimes, hacking is just someone spending more time on something than anyone else might reasonably expect.”[1]
- Published
- Collected
Related coverage
blog ·
projectzero.google
Welcome to the new Project Zero Blog
Announcement post introducing Project Zero's redesigned blog, explaining the migration, new layout and features, and where readers can find the archive of past security research.
blog ·
projectzero.google
The Windows Registry Adventure #7: Attack surface analysis
Part 7 of the Windows Registry Adventure series, mapping which Windows components parse registry data and identifying the most promising attack surface for deeper research.
blog ·
projectzero.google
Breaking the Sound Barrier Part I: Fuzzing CoreAudio with Mach Messages
Part one of a macOS audio series: building a fuzzer for CoreAudio by sending Mach messages, covering the attack surface, harness design, and early results.
blog ·
projectzero.google
The Windows Registry Adventure #6: Kernel-mode objects
Part 6 of the Windows Registry Adventure series, examining kernel-mode registry objects and the additional attack surface they expose to privilege escalation research.
blog ·
projectzero.google
The Windows Registry Adventure #5: The regf file format
Part 5 of the Windows Registry Adventure series, dissecting the regf file format underlying registry hives, its parsing hazards, and why it matters for fuzzing.
blog ·
projectzero.google
From Naptime to Big Sleep: Using Large Language Models To Catch Vulnerabilities In Real-World Code
How Project Zero evolved Project Naptime into Big Sleep, using large language models to find vulnerabilities in real-world software, with early results and observations.
Skip to content