Congratulations to Maxence (@maxenceschmitt.bsky.social) and Yassine on successfully using their three bugs 🤯 to exploit Home Assistant Green (cc: @home-assistant.io ). Tough break that they were previously known - we'll get 'em next time!

Congratulations to Maxence (@maxenceschmitt.bsky.social) and Yassine on successfully using their three bugs 🤯 to exploit Home Assistant Green (cc: @home-assistant.io ). Tough break that they were previously known - we'll get 'em next time!
Excited to share that 🇫🇷 Yassine Bengana & Maxence Schmitt (@maxenceschmitt.bsky.social) 🇫🇷 will be representing #Doyensec at #PWN2OWN Ireland - targeting the Smart Home category for $30,000 & 3 Master of Pwn points, Wed. Oct. 7 @ 11:15AM
One tap was enough to bypass a Chrome for iOS security check.
We found a way to use shortcuts to reach tel: or facetime: w/o Chrome applying its normal user-interaction checks.
The issue, CVE-2026-13795, has been fixed.
Details 👇
blog.doyensec.com/2026/09/24/c...
The skb that wasn’t freed - the Fragnesia primitive via Open vSwitch.
#Doyensec found a local priv. esc. affecting default Arch, Fedora, Debian, Amazon #Linux & RHEL. Read how a missing flag allows an unprivileged user to gain root access.