<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices.]]></title><description><![CDATA[<p>Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices.</p><p>Ever wanted root access on your router, phone, (tv/portable/etc) media player, washing machine, Jumbo jet, newag train, etc?</p><p>If you find a way to run the copyfail POC through somewhere, you'll be root!</p><p>Just make sure to try this before the next update gets installed on the device <img class="not-responsive emoji" src="https://mastodon.derg.nz/system/custom_emojis/images/000/062/005/original/e88ffeb88d582a5d.png" title=":dragon_sip:" /> </p><p><a href="https://mastodon.derg.nz/tags/cybersecurity" rel="tag">#<span>cybersecurity</span></a> <a href="https://mastodon.derg.nz/tags/copyfail" rel="tag">#<span>copyfail</span></a> <a href="https://mastodon.derg.nz/tags/linux" rel="tag">#<span>linux</span></a> <a href="https://mastodon.derg.nz/tags/jailbreaking" rel="tag">#<span>jailbreaking</span></a> <a href="https://mastodon.derg.nz/tags/hacking" rel="tag">#<span>hacking</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/3418a36a-a25c-43f7-b882-ac96e4023114/understated-opportunity-copyfail-means-we-get-to-jailbreak-a-whole-new-generation-of-locked-down-linux-devices.</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 01:55:24 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/3418a36a-a25c-43f7-b882-ac96e4023114.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 30 Apr 2026 14:51:08 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices. on Thu, 30 Apr 2026 14:59:46 GMT]]></title><description><![CDATA[<p>(I know this requires some way to run the POC as normal user, and that not every kernel build and device has the necessary exploitable bits, but it will still be an available way that you can try; I do suggest trying it simply to see if it works, wouldn't be the first time an (embedded or otherwise) device has weird libraries, oversized kernel builds, and bad protection past the frontend)</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.derg.nz/users/anthropy/statuses/116494249935800634</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.derg.nz/users/anthropy/statuses/116494249935800634</guid><dc:creator><![CDATA[anthropy@mastodon.derg.nz]]></dc:creator><pubDate>Thu, 30 Apr 2026 14:59:46 GMT</pubDate></item><item><title><![CDATA[Reply to Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices. on Thu, 30 Apr 2026 14:56:39 GMT]]></title><description><![CDATA[<p><span><a href="/user/anthropy%40mastodon.derg.nz">@<span>anthropy</span></a></span> the AF_ALG vector and small payload betrays itself</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/ap/users/116175731239673526/statuses/116494237636718553</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/ap/users/116175731239673526/statuses/116494237636718553</guid><dc:creator><![CDATA[bms48@mastodon.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 14:56:39 GMT</pubDate></item><item><title><![CDATA[Reply to Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices. on Thu, 30 Apr 2026 14:55:38 GMT]]></title><description><![CDATA[<p><span><a href="/user/anthropy%40mastodon.derg.nz" rel="nofollow noopener">@<span>anthropy</span></a></span> <br />Phones and other bespoke things are unlikely to use <code>algif_aead</code>, and as such will not be affected.</p>]]></description><link>https://board.circlewithadot.net/post/https://infosec.exchange/users/wdormann/statuses/116494233681414794</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://infosec.exchange/users/wdormann/statuses/116494233681414794</guid><dc:creator><![CDATA[wdormann@infosec.exchange]]></dc:creator><pubDate>Thu, 30 Apr 2026 14:55:38 GMT</pubDate></item><item><title><![CDATA[Reply to Understated opportunity: CopyFail means we get to jailbreak a whole new generation of locked down Linux devices. on Thu, 30 Apr 2026 14:55:11 GMT]]></title><description><![CDATA[<p><span><a href="/user/anthropy%40mastodon.derg.nz">@<span>anthropy</span></a></span> I don't think it will help much:</p><p> - On embedded systems, more often than not there's only root / getting access as a regular user is as hard as getting root.</p><p> - Custom kernel builds might not have AF_ALG support (though some might, I specifically implemented support for AF_ALG based hashing in casync-nano because we used that on one particular piece of hardware)</p>]]></description><link>https://board.circlewithadot.net/post/https://dgc.social/users/23n27/statuses/116494231918369368</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://dgc.social/users/23n27/statuses/116494231918369368</guid><dc:creator><![CDATA[23n27@dgc.social]]></dc:creator><pubDate>Thu, 30 Apr 2026 14:55:11 GMT</pubDate></item></channel></rss>