APT: post #1197 — TG.ME

GhostLock — CVE-2026-43499

This is a Linux kernel vulnerability found by VEGA that exists in every major distribution since 2011. Triggering the bug does not require any special kernel config or privilege. By turning it into a 97% stable privilege escalation and container escape, Google has rewarded us $92,337 in kernelCTF. This writeup covers the technical details of the exploit.

🔗 Research:
https://nebusec.ai/research/ionstack-part-2/

🔗 Exploit:
https://github.com/NebuSec/CyberMeowfia/tree/main/IonStack/CVE-2026-43499

#linux #kernel #lpe #container #escape
🔥18👍3❤2❤‍🔥1
July 8, 2026 10.9K 216