Pinned
ryaagard
50 posts
Joined May 2016
- Writing this exploit was quite hard 🫠Our research team achieved client RCE on Minecraft Bedrock Edition via a heap overflow to bypass ASLR and sidestep CFG. Writeup to come.
00:00 - Replying to @mosaicregressor and @osec_ioNo interaction is required after joining the server
- Replying to @embedsysWe plan to release the exploit in about a week and a half. It will be available at the following repository github.com/Crusaders-of-R…
- Replying to @FrederoxDev1.21.51 was the latest when we started writing the exploit. The bug was patched less than a month ago so it does affect some newer versions. It was also there before, but I am not sure for how long exactly (potentially a couple of years based on the bug type)
- Replying to @yo_yo_yo_jboThanks! A writeup will be released, though probably not very soon
- Replying to @rshiftYes, ubuntu 20.4 comes with it enabled by default, and probably a lot of other distros


