Blackwing Intelligence

Playing with Libmalloc in 2024

TL;DR

In this post, I introduce a new tool called heapster that allows you to play with macOS libmalloc. I walk you through how to use this tool and a couple strange things I found along the way.

... Read More

categories: #Blackwing Labs #research
tags: #vulnerability research #reverse engineering #tools #heap

A Touch of Pwn - Part I

TL;DR

Microsoft’s Offensive Research and Security Engineering (MORSE) asked us to evaluate the security of the top three fingerprint sensors embedded in laptops and used for Windows Hello fingerprint authentication. Our research revealed multiple vulnerabilities that our team successfully exploited, allowing us to completely bypass Windows Hello authentication on all three laptops.

... Read More

categories: #Blackwing Labs #research
tags: #vulnerability research #exploit development #reverse engineering #cryptography