TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Lobsters — security tag

Nightmare of the Javascript Optimization

blog.reg.rip via freddyb · 2026-04-26 · Read original ↗

ATT&CK techniques detected

2 predictions
T1055.001Dynamic-link Library Injection
94%
"successful _ grow _ hook was already called from inside memoryinstance : : grow ( ), and the grow itself lives in libraries / libwasm / abstractmachine / abstractmachine. h : 487 - 520 conclusion does asan detect this bug? answer : no the memory access of array buffer has optimiz…"
T1055.001Dynamic-link Library Injection
49%
"leak libc address by walking got libjs has a got for libc in _ _ cxa _ atexit 1. 6. 5 falsify the vtable in example, we can fire vtable - > internal _ get _ prototype _ of by ` object. getprototypeof ( ) so, which register can we control? ( register dump after falsify cell - > vt…"

Summary

Comments