face0xff's Avatar

face0xff

@face.0xff.re

vulnerability researcher ยท reverse engineer ยท โ“‹๐ŸŒฑ https://0xff.re/

58
Followers
69
Following
4
Posts
25.11.2024
Joined
Posts Following

Latest posts by face0xff @face.0xff.re

I will release a blog post sometime after both conferences have passed. I believe videos for the talks will also be published after a few months.

14.11.2025 08:00 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image Post image

Another collision: the Thalium team from Thales Group needed 3 bugs to exploit the Phillips Hue Bridge, but only their heap based buffer overflow was unique. The others were seen earlier in the contest. They still earn $13,500 and 2.75 Master of Pwn points. #Pwn2Own

23.10.2025 14:19 ๐Ÿ‘ 2 ๐Ÿ” 1 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

๐Ÿ’ก Lights on! The Thalium Team demonstrated their mastery of the Phillips Hue Bridge by changing the color of a connected light. They head off to the disclosure room to illuminate us on how they did it. #Pwn2Own

23.10.2025 12:55 ๐Ÿ‘ 1 ๐Ÿ” 1 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image

Excited to share that I will be presenting my research on a Kindle vulnerability chain at Black Hat Europe 2025 and CODE BLUE 2025. See you in London/Tokyo :)

25.09.2025 21:48 ๐Ÿ‘ 3 ๐Ÿ” 0 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0
SSTIC Challenge 2025: Writeup A detailed walkthrough of the renowned SSTIC challenge's 2025 edition, featuring reverse engineering, deobfuscation, browser exploit, cryptography and steganography.

I recently solved the SSTIC 2025 challenge. A detailed writeup is available on my blog: face.0xff.re/posts/sstic-...

11.06.2025 23:48 ๐Ÿ‘ 3 ๐Ÿ” 1 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image
30.11.2024 15:06 ๐Ÿ‘ 37 ๐Ÿ” 12 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 0
Post image
29.11.2024 16:18 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
LLVM-powered devirtualization Virtualization is a powerful technique for code obfuscation, and reversing it can be challenging. In this post, we cover the work done during an internship on developing an automated devirtualization ...

Recently finished an internship at Thales where I worked on binary deobfuscation using LLVM.

Here's a brief summary:
blog.thalium.re/posts/llvm-p...

25.11.2024 19:06 ๐Ÿ‘ 12 ๐Ÿ” 4 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0