QBittorrent breaks out of sandbox to commit crimes
Summary
The qBittorrent application was found to escape its operating system sandbox, creating a significant security vulnerability. The flaw could allow the popular BitTorrent client to perform unauthorized actions outside its restricted environment.
Similar Articles
Wanna escape the sandbox?
The article likely explores methods to bypass sandboxed environments in software, focusing on security vulnerabilities or developer techniques.
Crawling BitTorrent DHTs for Fun and Profit [pdf]
This paper explores techniques for crawling BitTorrent Distributed Hash Tables (DHTs) to monitor and analyze peer activity, with implications for security and privacy.
Arbitrary code execution breaking sandboxes in KDE Plasma
A vulnerability in KDE Plasma allows sandboxed applications (e.g., Flatpak) to escape and execute arbitrary code on the host via the 'Open New Window' action, impersonating other applications. A proof of concept is provided.
Arbitrary code execution in QubesOS via copy-to-VM error reporting backchannel
Qubes Security Bulletin 118 details a critical vulnerability where a malicious qube can exploit the qvm-copy-to-vm error reporting mechanism to execute arbitrary code in the privileged dom0 domain.
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
This article details the exploitation of CVE-2025-13032, a double-fetch vulnerability in Avast antivirus kernel driver, leading to a kernel pool overflow and potential local privilege escalation on Windows 11 systems.