Stream: jco

Topic: Vulnerabilities in V8's Wasm/JS implementations


view this post on Zulip Victor Adossi (Sep 02 2025 at 06:25):

Interesting video from a latest Black Hat ASIA 2025:

Bridging the Gap: Type Confusion and Boundary Vulnerabilities Between WebAssembly and JavaScript

Many of the bugs stemmed from type confusion in v8. Also include a great succinct overview of JSPI and WASMGC (because they ended up being/contributing to vectors)


Last updated: Jan 10 2026 at 02:36 UTC