Log inSign up
Samuel Groß
796 posts
Image
user avatar
Samuel Groß
@5aelo
Working on Project Zero, Big Sleep, and V8 Security. Personal account. Also @[email protected] and saelo.bsky.social
Zürich, Switzerland
phrack.org/author_saelo.h…
Joined May 2013
524
Following
24.9K
Followers
  • Pinned
    user avatar
    Samuel Groß
    @5aelo
    Jan 9, 2020
    I'm very excited to share my blogpost series (including PoC code) about a remote, interactionless iPhone exploit over iMessage:
    Image
    Remote iPhone Exploitation Part 1: Poking Memory via iMessage and CVE-2019-8641
    From projectzero.google
  • user avatar
    Samuel Groß
    @5aelo
    Mar 20, 2019
    Fuzzilli, my JavaScript engine fuzzer, is now open source: github.com/googleprojectz… \o/ Keep an eye on the Project Zero bugtracker in the next few weeks for some of the bugs found with it. Also let me know if you encounter any problems when using it! :)
    Image
    GitHub - googleprojectzero/fuzzilli: A JavaScript Engine Fuzzer
    From github.com
  • user avatar
    Samuel Groß
    @5aelo
    Dec 27, 2019
    Slides + recording of my #36c3 talk: saelo.github.io/presentations/… media.ccc.de/v/36c3-10497-m… had to omit many details, but blogpost coming soon!
  • user avatar
    Samuel Groß
    @5aelo
    Mar 16, 2022
    I'm excited (and also a little sad) to announce that after 3 fantastic years with Project Zero, it's time for me to try something new. So starting this month, I'll be building up and leading a new V8 security team at Google!
  • user avatar
    Samuel Groß
    @5aelo
    Nov 8, 2018
    My #pwn2own exploit chain from this year, essentially 3 logic bugs to go from Safari to kernel on macOS up to 10.13.3, is now open source: github.com/saelo/pwn2own2…. The README also links to a few slide decks which contain some more background information :)
    Image
    GitHub - saelo/pwn2own2018: A Pwn2Own exploit chain
    From github.com
  • user avatar
    Samuel Groß
    @5aelo
    Feb 4, 2022
    Here are the slides from the "Attacking JavaScript Engines in 2022" talk by @itszn13 and myself @offensive_con. It's a high-level talk about JS, JIT, various bug classes, and typical exploitation flows but with lots of references for further digging! saelo.github.io/presentations/…
  • user avatar
    Samuel Groß
    @5aelo
    May 7, 2019
    phrack.org/papers/jit_exp… #phrack :)
  • user avatar
    Samuel Groß
    @5aelo
    Apr 28, 2020
    New blogpost on some recent fuzzing work of mine (and 0click attack surfaces!):
    Image
    Fuzzing ImageIO
    From projectzero.google
  • user avatar
    Samuel Groß
    @5aelo
    Jan 28, 2021
    The in-the-wild zero-click iMessage exploit detected by @citizenlab last year apparently didn't affect iOS 14. I did some reverse engineering to see what had changed in that release and found lots of cool things!
    Image
    A Look at iMessage in iOS 14
    From projectzero.google
  • user avatar
    Samuel Groß
    @5aelo
    Feb 17, 2019
    Here are the slides from my #OffensiveCon19 talk about my approach for JavaScript engine fuzzing: saelo.github.io/presentations/… My master's thesis (for which I developed the fuzzer) can be found here: saelo.github.io/papers/thesis.… Thanks for the great conference @offensive_con! =)
  • user avatar
    Samuel Groß
    @5aelo
    Sep 13, 2019
    After looking at iOS 12.4.1 I'm happy to say that Apple has hardened iMessage by no longer allowing child classes during its NSUnarchiving (context: googleprojectzero.blogspot.com/2019/08/the-fu…). This prevents almost all of the vulnerabilities @natashenka and I found from being remotely exploited :)
    Image
    The Fully Remote Attack Surface of the iPhone
    From projectzero.google
  • user avatar
    Samuel Groß
    @5aelo
    May 20, 2021
    Small blog post on how to run iOS code natively on Arm-based Macs. Enjoy :)
    Image
    Fuzzing iOS code on macOS at native speed
    From projectzero.google
  • user avatar
    Samuel Groß
    @5aelo
    Oct 27, 2019
    Today is the 3rd anniversary of "Attacking JavaScript Engines". Not a lot has changed, but I tried to briefly summarize the things that did: gist.github.com/saelo/dd598a91… It's been a few month since my last interactions with JSC though, so any corrections/additions are very welcome :)
    Image
    3 Years of Attacking JavaScript Engines
    From gist.github.com
  • user avatar
    Samuel Groß
    @5aelo
    Dec 27, 2019
    My talk on iMessage exploitation (fahrplan.events.ccc.de/congress/2019/…) starts in two hours. You can watch it in room Ada or on streaming.media.ccc.de/36c3 #36c3

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement