About this talk
This talk introduces a structured five-step methodology for hunting driver vulnerabilities, a critical area in offensive security. Led by Priyanshu Sharma from MIT Pune, the session emphasizes moving beyond random fuzzing by combining mass collection, API filtering, device verification, static analysis, and guided fuzzing into a repeatable pipeline. The speaker demonstrates how to effectively narrow down thousands of drivers to a shortlist of high-value targets using import table analysis and device verification. Additionally, the session explores navigating dispatch tables and IRP major functions in Ghidra to identify dangerous IOCTL handlers, highlighting the real-world application of this methodology, which led to the discovery of multiple zero-days, including CVE-2025-60419.
More from this event
See all 28 talks →
Ai, Deception And Deepfakes When Trust Becomes The Primary Attack Surface
36:15
Cloud Resilience Simplified Less Data, Stronger Security
33:14
Dpdpa In Action Designing A 72 Hour Breach Response That Actually Works
22:56
Regulation, Resilience and Reality: How CXOs Navigate the Compliance Security Trade-Off
35:51