Excited to announce that we will present our latest work on baseband fuzzing at Black Hat USA this year!
Join Dyon and me on a journey of fuzzing layer 2 and finding multiple critical OTA vulnerabilities!
More info: blackhat.com/us-24/briefing…
See you in August!
📢 Excited to announce that the results on BaseBridge, our project on improving cellular baseband emulation, are going public this week. Dyon will present at IEEE S&P on Monday 3pm, while David and I will be on stage at offensivecon on Saturday 11am with more details! 1/6
Do not miss Dyon 's presentation of our BaseBridge paper on Day 1 of IEEE S&P - Session 4, Track 2: Space and Cellular Security, Grand Ballroom A #sp25
new baseband rehosting research just dropped!
BaseBridge dynamically identifies relevant regions from a memory dump which are then loaded into the FirmWire emulator to enrich global state.
this leads to way higher fidelity, more coverage during fuzzing, and finally more bugs.
Our OffensiveCon talk on stateful baseband emulation (and how improper string handling led to baseband RCE) is available on YouTube: youtu.be/zoAITq7jUM8. It has been a pleasure; awesome conference, brilliant people. Slides and paper: danielklischies.net/research/baseb…