21 May 2026, 15:56 UTC267 views7 reactionsread 8 August 2026 Technical analysis and exploitation strategy for CVE-2026-40369: a 12-byte kernel increment exploitable both as LPE and SBX.
Originally prepared for Pwn2Own Berlin, the bug became public shortly before the contest after CVE assignment.
https://voidsec.com/cve-2026-40369-browser-sandbox-escape/
🔥7
12 May 2026, 13:56 UTC365 views3 reactionsread 8 August 2026 Some takeaways from our team on the usage of AI for vulnerability research: https://voidsec.com/ai-vulnerability-research-fuzzer-era/
❤3
11 Dec 2025, 16:04 UTC605 views7 reactionsread 8 August 2026 No, we don’t only post about vulnerability research…
This time, we took a short break from breaking things and decided to build something instead: our local LLM rig. Not because it's “AI hype season,” but because we genuinely enjoy tinkering and thought others might, too.
If you're curious about running powerful LLMs locally without selling your kidney for a GPU, here you go: https://www.crowdfense.com/home-made-llm-…
👍5🥱2
11 Sept 2025, 16:00 UTC771 views2 reactionsread 8 August 2026 Bidding farewell to one of the last Windows Kernel address leaks, CVE-2025-53136 (KASLR bypass).
Sometimes, even patches can open new doors for exploitation.
https://www.crowdfense.com/nt-os-kernel-information-disclosure-vulnerability-cve-2025-53136/
❤2
4 Sept 2025, 18:23 UTC667 views7 reactionsread 8 August 2026 Technical deep-dive into CVE-2025-53149, a heap-based buffer overflow in the Windows Kernel Streaming WOW Thunk Service driver (ksthunk.sys).
https://www.crowdfense.com/cve-2025-53149-windows-ksthunk-heap-overflow/
🔥6❤1
10 May 2025, 07:31 UTC794 views3 reactionsread 8 August 2026 🔥 New Windows bounty just dropped on VRH! Looking for a Word or Excel RCE.
Join the hunt - vrh.crowdfense.com
👍3
17 Apr 2025, 15:57 UTC855 views5 reactionsread 8 August 2026 🔥 New iOS bounty just dropped on VRH! Looking for an iOS Kernel Privilege Escalation.
Join the hunt - vrh.crowdfense.com
👍5
7 Apr 2025, 16:12 UTC886 views1 reactionsread 8 August 2026 🚨 New bounties just dropped! 🚨 We’ve added fresh CVE bounties on the VRH platform. Check them out and start earning rewards for your discoveries: vrh.crowdfense.com
🔥1
17 Mar 2025, 16:46 UTC970 views7 reactionsread 8 August 2026 Get ready for 2025's bounties
🔥7
30 Jan 2025, 07:29 UTC≈1,060 viewsread 8 August 2026 New Bounty: CCTV & Camera Exploits – Hikvision Focus
We are currently expanding our bounty program to include CCTV and camera vulnerabilities, with a special focus on Hikvision devices.
We are interested in both:
- 0-day vulnerabilities
- N-day vulnerabilities (up to six months old)
If you have high-impact findings in this space, submit them through our platform for evaluation: https://vrh.crowdfense.com
1 Jan 2025, 12:34 UTC853 views2 reactionsread 8 August 2026 Happy new year researchers, may your 2025 exploits be successful! 🎉🥂🍾
2024 was a productive year, we will continue to improve our VRH platform and reach our goals
👏2
2 Dec 2024, 18:05 UTC866 views1 reactionsread 8 August 2026 We are currently looking for weaponized Android n-days (LPE/RCE), which are not publicly available and affect Android 13/14.
Submit your findings today and get the BIG payouts you deserve 💰
https://www.vrh.crowdfense.com/
👍1
Showing the 12 most recent of 20 posts we hold for @crowdfense. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.