5156 | How we broke PHP, hacked Pornhub and earned $20,000 |
RCE
Memory corruption
Use-After-Free |
PornHub |
Ruslan Habalov (@evonide) |
Bug Bounty | 2016-07-23 | 2023-06-13 |
4485 | CVE-2018-9539: Use-after-free vulnerability in privileged Android service |
Memory corruption
Use-After-Free |
Google |
Tamir Zahavi-Brunner (@tamir_zb) |
Bug Bounty | 2018-11-09 | 2023-06-13 |
3798 | Google Chrome portal element fuzzing |
RCE
Memory corruption
Buffer Overflow
Use-After-Free |
Google |
Pawel Wylecial (@h0wlu) |
Bug Bounty | 2019-12-06 | 2023-06-13 |
3730 | Google Chrome display locking fuzzing |
Use-After-Free
Memory corruption |
Google |
Pawel Wylecial (@h0wlu) |
Bug Bounty | 2020-01-08 | 2023-06-13 |
2121 | Use-After-Free in Voice Control: CVE-2021-30902 Write-up |
Memory corruption |
Apple |
08Tc3wBB (@08Tc3wBB) |
Bug Bounty | 2021-10-27 | 2023-06-13 |
1290 | Analysis of Adobe Acrobat Reader Javascript Doc.print() Use-After-Free Vulnerability (CVE-2022-34233) |
Memory corruption |
Adobe |
ThreatLabz (@Threatlabz) |
Bug Bounty | 2022-08-01 | 2023-06-13 |
953 | [CVE-2022-1786] A Journey To The Dawn |
Use-After-Free
Memory corruption
Local Privilege Escalation |
Google (kCTF)
Linux Kernel Organization |
kylebot (@ky1ebot) |
Bug Bounty | 2022-10-15 | 2023-06-13 |
946 | Guest Blog Post - Memory corruption vulnerabilities in Edge |
Browser hacking
Memory corruption
Use-After-Free
Out-of-bounds Read
Out-of-bounds Write |
Microsoft |
David Erceg (@david_erceg) |
Bug Bounty | 2022-10-17 | 2023-06-13 |
687 | Foxit PDF Reader - Use after Free - Remote Code Execution Exploit - CVE-2022-28672 |
Memory corruption
Use-After-Free |
Foxit |
Ashfaq Ansari (@HackSysTeam) |
Bug Bounty | 2022-12-16 | 2023-06-13 |
535 | CVE-2022-44789 |
Memory corruption
Use-After-Free
RCE
Security code review |
Artifex MuJS |
Alvin Ng (@alngpwn) |
Bug Bounty | 2023-01-28 | 2023-06-13 |
534 | Adobe Acrobat Reader - resetForm - CAgg UaF - RCE Exploit - CVE-2023-21608 |
Memory corruption
Use-After-Free
RCE |
Adobe |
Ashfaq Ansari (@HackSysTeam) |
Bug Bounty | 2023-01-28 | 2023-06-13 |
365 | Hacking the Nintendo DSi Browser |
Memory corruption
Use-After-Free
Browser hacking |
Nintendo |
Nathan Farlow (@0x1337cafe) |
Bug Bounty | 2023-03-02 | 2023-06-13 |