Stream: jco

Topic: Vulnerabilities in V8's Wasm/JS implementations


view this post on Zulip Victor Adossi (Sep 02 2025 at 06:25):

Interesting video from a latest Black Hat ASIA 2025:

Bridging the Gap: Type Confusion and Boundary Vulnerabilities Between WebAssembly and JavaScript

Many of the bugs stemmed from type confusion in v8. Also include a great succinct overview of JSPI and WASMGC (because they ended up being/contributing to vectors)


Last updated: Dec 06 2025 at 07:03 UTC