Nebula Security

Website: nebusec.ai  ·  Twitter @nebusecurity  ·  Bug list (885+)

Latest research

  • IonStack part I: Unsound IonBanana Peel in Ion Compiler, Slipping Through Firefox's SpiderMonkey JIT
    [Firefox SpiderMonkey] 📖 Writeup · 🐦 Twitter · 🔗 Source code
  • IonStack part II: GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years
    [Linux Kernel] 📖 Writeup · 🐦 Twitter · 🔗 Source code
  • Longinus: 2 Boundaries in One Bug, Piercing Chrome's Renderer and V8 Sandbox with a Single Vulnerability, CVE-2026-6307
    [Chrome V8] 📖 Writeup · 🐦 Twitter
  • Nginx-QuicBurst: First public Nginx RCE on a generic config with an ASLR bypass, CVE-2026-42530
    [Nginx] 🐦 Twitter · 🔗 Source code
  • Nginx-PoolSlip: First public Nginx RCE with an ASLR bypass, CVE-2026-9256
    [Nginx] 🐦 Twitter · 🔗 Source code
  • How an Omitted Write Barrier in V8 Turns Into RCE in Chrome: CVE-2026-5865
    [Chrome V8] 📖 Writeup · 🐦 Twitter · 🔗 Source code
  • From a Netfilter Bug to kernelCTF: Exploiting CVE-2026-23274 in the Linux Kernel and winning a $10,500 Bounty
    [Linux Kernel] 📖 Writeup · 🐦 Twitter · 🔗 Source code

N-day Research

  • CVE-2026-64560: LPE on Linux and Android · 🔗 Source code
  • CVE-2026-43074: LPE on Linux and Android · 🔗 Source code
S
Description
Automated archival mirror of github.com/NebuSec/CyberMeowfia
Readme Apache-2.0 450 KiB
Languages
C 92%
Python 3.6%
HTML 3.2%
Makefile 1%