Log inSign up
sleirsgoevy
123 posts
user avatar
sleirsgoevy
@sleirsgoevy
Joined July 2020
0
Following
11.7K
Followers
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 14, 2021
    mega.nz/folder/5xcRTQ7… Mira for 7.55. mega.nz/file/MsMVDabb#… JB 7.55 with patches by AlAzif and ChendoChap.
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 13, 2021
    I can confirm that this exploit indeed works on 7.55 without any changes. Still no Mira/HEN though.
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Oct 27, 2021
    Webkit PoC for 9.00, achieves arbitrary read/write and addrof/fakeobj
    Image
    PS4 WebKit exploit on 9.00
    From gist.github.com
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 12, 2021
    mega.nz/file/hwEHDQSL#… 7.50, expects payload on 9020/tcp. Applied patches: mmap, mprotect, syscall everywhere, kexec, delayed panics. Note: there is no Mira/HEN for 7.50 yet!
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Dec 13, 2020
    Some valid 7.02 addresses: 0x200eb00d8 0x200f300d8 0x200fb00d8 0x2011100d8 The success rate is about 10% for the last one. Unfortunately the exploit then crashes in the critical section in leakJSC. Will now investigate how to fix it.
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Oct 27, 2021
    P.S. No kernel exploit is out, DO NOT UPDATE
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 17, 2021
    mega.nz/file/NhkmXLLR#… Probably the last standalone update for 7.5x. Will set up a proper host soon.
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Jan 20, 2021
    Got a working exploit for FreeBSD 9 using the new SOCK_RAW vulnerability. gist.github.com/sleirsgoevy/ff… asciinema.org/a/385584
    Image
    FreeBSD 9 PoC of kernel code execution using the new TheFlow vulnerability
    From gist.github.com
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Jun 16, 2022
    Partial reimplementation of BD-JB (without kernel part): github.com/sleirsgoevy/bd… ISO image: mega.nz/file/p99hHaYT#… Built with "PS3 BD-J DevKit": mega.nz/folder/A4IFGYg…
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 19, 2022
    To clarify: I am NOT dead, I am NOT in Ukraine, and I have NOT been recruited into the army. Everyone telling the opposite is a detractor.
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Dec 16, 2020
    Image
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Mar 3, 2021
    Another FreeBSD PoC, now utilizing TheFlow's hint. Does not do any zone drains, so should be more portable. Fun fact: it **seems** that the function tweeted by TheFlow does not need to be buggy. A patched one would also do its job.
    Image
    Another FreeBSD 9 PoC of the SOCK_RAW vulnerability, using TheFlow's hint. Does not do any zone...
    From gist.github.com
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Dec 14, 2020
    Fix for the crash in leakJSC(): after debug_log("[+] Got a relative read"); insert var tmp_spray = {}; for(var i = 0; i < 100000; i++) tmp_spray['Z'.repeat(8 * 2 * 8 - 5 - LENGTH_STRINGIMPL) + (''+i).padStart(5, '0')] = 0x1337;
  • user avatar
    sleirsgoevy
    @sleirsgoevy
    Oct 4, 2022
    mega.nz/file/o5E3gRTJ#… BD-JB for PS5 with payload support (port 9019).
    Image
    mega.nz
    8 MB file on MEGA

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement