The search for the Trusted Execution Environment vulnerability for the Google Pixel 10 that maybe doesn't even exist has begun.
The search for the Trusted Execution Environment vulnerability for the Google Pixel 10 that maybe doesn't even exist has begun.
Now it has been proven that all of this also works with the Google Pixel 10.
Something pretty crazy just happened in Gemini Plays Pokemon: During self-critique, it hallucinated the idea that it gets provided raw map data. Believing this to be true, it searched the environment and found a file *used internally by the harness* and took advantage of it!
Making companies mad is basically my hobby. Play Integrity is Google's system to verify that your device is untampered. My rooted phone without a valid keybox just passes these checks. I love unintended "features"๐
Spending this weekend with 3 fellow researchers going down the rabbit hole of Qualcomm's TEE implementation. Time to lift the curtain and see what's hiding behind the 'trusted' part. No promises, but we're curious minds with too much free time and the right tools. Stay tuned.