quarkslab
1,695 posts
user avatar
quarkslab
@quarkslab
Securing every bit of your data bsky.app/profile/quarks… infosec.exchange/@quarkslab
Paris, France
quarkslab.com
Joined October 2011
13
Following
12.4K
Followers
  • user avatar
    quarkslab
    @quarkslab
    Feb 14, 2025
    Unrestrict the restricted mode for USB on iPhone. A first analysis @citizenlab #CVE-2025-24200 👉 blog.quarkslab.com/first-analysis…
    86K
  • user avatar
    quarkslab
    @quarkslab
    Jun 29, 2022
    Oops, they did it again! The Titan-M chip is the root of all security in Google's Pixel phones @DamianoMelotti & @max_r_b will talk about their journey from Reversing & Fuzzing to Code Execution & leaking its encryption keys tomorrow at @WEareTROOPERS troopers.de/troopers22/age…
    TItan-M chip in a Google Pixel phone with wires soldered for pwnage
  • user avatar
    quarkslab
    @quarkslab
    Sep 7, 2023
    Did you know that Windows processes fundamental to Operating System security run in Isolated User Mode and can not be debugged ? Well that's true except when it isn't. Here @fdfalcon provides a step by step guide to do it blog.quarkslab.com/debugging-wind… #Windows #ReverseEngineering
    Debugging  vmsp.exe in VTL1 with nested virtualization and binary patching. 
The Way of The Cracker
    64K
  • user avatar
    quarkslab
    @quarkslab
    Jan 16, 2024
    Is remote code execution in UEFI firmware possible? Yes it is. Meet #PixieFAIL: 9 vulnerabilities in the IPv6 stack of EDK II, the open source UEFI implementation used by billions of computers. Full details by @fdfalcon and @4Dgifts in our new blog post: blog.quarkslab.com/pixiefail-nine…
     Pixies are said to reward consideration and punish neglect of server maintenance on the part of larger humans, they bring blessings to those who are fond of timely patching.
    79K
  • user avatar
    quarkslab
    @quarkslab
    Aug 29, 2023
    A Starlink User Terminal is a dish best served reversed and that is exactly what @magocarlos1999 did for the past 6 months. Here he shares his journey and the tools he built during his internship at Quarkslab. Dive deep into Starlink's UT firmware! blog.quarkslab.com/starlink.html
    It could have been great. It could have been pizza. But it looks like a SpaceX Starlink dish doesn't it? That's what it is. 
Firmware is eating the Earth's orbit.
    72K
  • user avatar
    quarkslab
    @quarkslab
    Oct 15, 2024
    Finding and chaining 4 vulns to exfiltrate encryption keys from the Android Keystore on Samsung series A* devices. Did you miss the "Attacking the Samsung Galaxy A* Boot Chain" talk by @max_r_b and Raphaël Neveu earlier this year ? Talk && PoC || GTFO: blog.quarkslab.com/attacking-the-…
    Nice doggie will haxx0rz you s3kr1t keyz w0w
    21K
  • user avatar
    quarkslab
    @quarkslab
    Apr 17, 2019
    [BLOG] Reverse-engineering Broadcom wireless chipsets by @Phenol__ blog.quarkslab.com/reverse-engine… The long and good trip of an intern, then the long and sad disclosure timeline of 5 vulnerabilities. Thx to @Broadcom we dont know what is vulnerable...
  • user avatar
    quarkslab
    @quarkslab
    May 10, 2019
    We are constantly being asked about so-called "secure messaging apps". Here is a quick overview
  • user avatar
    quarkslab
    @quarkslab
    Jun 9, 2020
    Fuchsia is Google's new open source OS with a focus on security and privacy. A Quarkslab researcher took a look and found several vulnerabilities. They are now fixed. Curious about the technical details ? Find them in our new blog post: blog.quarkslab.com/playing-around…
  • user avatar
    quarkslab
    @quarkslab
    Feb 11, 2025
    Good tools are made of bugs: How to monitor your Steam Deck with one byte. Finding and exploiting two vulnerabilities in AMD's UEFI firmware for fun and gaming . A Christmas gift in February, brought to you by the amazing @pwissenlit 🫶 blog.quarkslab.com/being-overlord…
    calc.exe is a the new Doom
    22K
  • user avatar
    quarkslab
    @quarkslab
    Jan 13, 2022
    Glad to publish the technical audit report of our experts (involving @RobinDavid1) on the MimbleWimble #MWEB integration in Litecoin #LTC. Many thanks to @LitecoinProject & @DavidBurkett38 for making this assessment possible! blog.quarkslab.com/audit-of-the-m…
  • user avatar
    quarkslab
    @quarkslab
    Feb 13, 2020
    Today is a big day, especially for @JonathanSalwan: he will defend his PhD: symbolic execution for binary deobfuscation. The team is super proud of the long road he walked!
  • user avatar
    quarkslab
    @quarkslab
    Sep 14, 2018
    [BLOG] Modern iOS Jailbreaks' Post-Exploitation blog.quarkslab.com/modern-jailbre… What is exactly a jailbreak, how it works and the match LiberiOS vs Electra.
  • user avatar
    quarkslab
    @quarkslab
    Nov 11, 2021
    👏Our researchers @DamianoMelotti @max_r_b @doegox just finished their talk about reversing Google's Titan-M chip. Partial chip pinout, Ghidra loader, an open source API client, a fuzzer, 1st ever code exec exploit, slides & white paper now available here
    GitHub - quarkslab/titanm: This repository contains the tools we used in our research on the Google...
    From github.com

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms of Service|Privacy Policy|Cookie Policy|Accessibility|Ads info|© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up