Skip to content
P
非影
精选
最新
漏洞
研究
工具
主题
来源
搜索
搜索
🌓
English
面向安全从业者的中英双语安全研究与漏洞情报精选。
近乎无限的内存:逃出 Chrome 沙箱
projectzero.google
| 博客 |
#sandbox-escape
|
#chrome
|
#project-zero
|
#swiftshader
摘要
近乎无限的内存:在发现多个 Chrome 沙箱逃逸候选漏洞后,探索利用 SwiftShader 逃出沙箱的路径。
发布时间
2019-04-11 00:00
收录时间
2026-09-22 23:40
原文 ↗
← 上一篇
Windows 利用技巧:滥用用户态调试器
下一篇 →
Splitting atoms in XNU
相关内容
研究
·
projectzero.google
利用 NVMAP 逃逸 Chrome 沙箱 - CVE-2014-5332
Google Project Zero 文章,利用 NVIDIA NVMAP 驱动漏洞 CVE-2014-5332 逃逸 Chrome for Android 沙箱。
博客
·
projectzero.google
用 RIDL 逃出 Chrome 沙箱
用 RIDL(微架构数据采样)逃出 Chrome 沙箱(Stephen Röttger 客座博文)。
博客
·
projectzero.google
Heap Feng Shader:利用 Chrome 中的 SwiftShader
Heap Feng Shader:在多数系统上 Chrome 正常情况不会使用 SwiftShader——但攻击者可以改变这一点。
博客
·
projectzero.google
In-Console-Able
Google Project Zero 文章,描述一个削弱 Windows 沙箱类限制的安全漏洞,可助力沙箱逃逸研究。
博客
·
projectzero.google
pwn4fun 2014 春季篇 - Safari - 第二部分
Google Project Zero pwn4fun 系列下篇,详解 Safari 攻陷从渲染器沙箱升级至 OS X 全系统控制的过程。
博客
·
projectzero.google
更多 Mac OS X 与 iPhone 沙箱逃逸及内核漏洞
Google Project Zero 汇总随 OS X 10.9.5 与 iOS 8 修复的 Mac OS X 与 iPhone 沙箱逃逸及提权漏洞。
返回