#TOCTOU
TOCTOU-a, race on that thang
January 21, 2025 at 12:50 AM
TOCTOU on that thang
November 26, 2024 at 5:37 AM
Defeating Secure Boot via hardware-level TOCTOU

onekey.com/resource/mak...

#infosec #embedded
March 21, 2025 at 10:45 AM
TOCTOU, synchronize on that thang
May 31, 2026 at 9:53 PM
TOCTOU. How The Attack Works, How to Stop It.
TOCTOU. How The Attack Works, How to Stop It.
mercenarymind.com
September 26, 2026 at 10:05 PM
Find someone who loves you as much as Claude loves causing and finding TOCTOU bugs
April 12, 2026 at 11:05 AM
TOCTOU Twins is my least favorite alternative subgenre of dream pop bands from the 80s.
August 24, 2026 at 3:02 PM
Evitar TOCTOU
October 17, 2024 at 3:27 PM
Applying feminist technomaterialism in the infosec workplace by thinking: "I know a real human being had to write this thread scheduler to interoperate cleanly with interrupt service routines and deliver Real Time performance guarantees, and that's hard as balls so I know where to look for TOCTOU"
July 14, 2026 at 12:41 PM
Exploits TOCTOU at hardware level in order to bypass secure boot

www.onekey.com/resource/mak...

#infosec #embedded
December 9, 2024 at 11:17 PM
(on an unrelated note you can trivially TOCTOU a lot of self-integrity checks, patch it back right after launch)
March 1, 2025 at 11:46 PM
You have convinced me to buy one 😄 it's on its way.
Sniffing an SPI flash being read and making a pretty picture of the address being read vs time might be fun to look for TOCTOU bugs visually like Trammel hudson did www.flickr.com/photos/osr/3...
SPI TOCTOU
"Now you see it... TOCTOU attacks on Bootguard" at HITB2019 More info trmm.net/TOCTOU
www.flickr.com
May 17, 2025 at 7:17 PM
to take a small example, I just glanced through the reports and it flagged a place where an example had a TOCTOU race, and that someone copying this code would repro the TOCTOU. which I mean, sure, it's worth fixing, but also ¯⁠\⁠_⁠(⁠ツ⁠)⁠_⁠/⁠¯
July 29, 2026 at 12:32 AM
TOCTOU
July 2, 2026 at 6:48 PM
CVE-2020-8562: Bypass of Kubernetes API Server proxy TOCTOU -
CVE-2020-8562: Bypass of Kubernetes API Server proxy TOCTOU · Issue #101493 · kubernetes/kubernetes
CVSS Rating: Low (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N) A security issue was discovered in Kubernetes where an authorized user may be able to access private networks on the Kubernetes contr...
github.com
October 3, 2025 at 3:09 PM
toctou mentioned 🥳
August 7, 2026 at 1:49 AM
llms love toctou vulns
August 7, 2026 at 1:49 AM
i blame TOCTOU for my grave sin :p
December 21, 2024 at 1:42 PM
Eu travei um colega de equipe ao mostrar um TOCTOU que eu já tinha mostrado antes e já tinha dado uma solução que funcionava mas que ele removeu 🤣
June 26, 2025 at 10:54 PM
[RSS] Linux Kernel: TOCTOU in Exec System


github.com ->


Original->
December 3, 2024 at 7:14 AM
9. github.com/bevyengin...

A TOCTOU bug in our ECS internals. No, no, not the cryptocurrency scammer! For those with an unconventional background in #programming like myself, TOCTOU means Time of Check Time of Use: a common class of bugs that's caused by the data changing after your check.
Prevent TOCTOU bugs in ComponentsQueuedRegistrator by SkiFire13 · Pull Request #20016 · bevyengine/bevy
Objective Fix ComponentsQueuedRegistrator::queue_register_component does not ensure components are registered only once #20014 Solution Don't make the force_register_ family of functions...
github.com
July 14, 2025 at 10:13 PM
🟠 CVE-2026-100713 - High (7.8)

Froxlor 2.3.10 and earlier contain a time-of-check time-of-use (TOCTOU) race condition in the SSH...

https://www.thehackerwire.com/vulnerability/CVE-2026-100713/

#infosec #cybersecurity #CVE #vulnerability #security #patchstack
September 27, 2026 at 12:02 AM
Linux Kernel: TOCTOU in Exec System | …I am sure that there was a vulnerability of this exact kind in Unix circa 1988 +/- 4yrs
https://alecmuffett.com/article/110753
#Cve202443882 #security #setuid #unix
Linux Kernel: TOCTOU in Exec System | …I am sure that there was a vulnerability of this exact kind in Unix circa 1988 +/- 4yrs
I’m pretty sure there was a direct one on the inode permissions, and possibly a second one involving symlinks. Every bug has its day again and again and again. There is a Time-of-Check / Time…
alecmuffett.com
December 9, 2024 at 9:10 AM
New blog post: Today I Learned - Protected Symlinks
dfir.ch/posts/today_...

The protected_symlinks setting within the Linux Kernel helps prevent TOCTOU (time-of-check-time-of-use) vulnerabilities in privileged processes.
February 24, 2025 at 1:49 PM
🚨 EUVD-2026-87686
📊 7.1/10
🏢 froxlor

📝 Froxlor 2.3.10 and earlier contain a time-of-check time-of-use (TOCTOU) race condition in the SSH key synchronization cron (lib/Froxlor/Cron/System/SshKey...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-87686

#cybersecurity #infosec #cve #euvd
September 26, 2026 at 2:01 PM