Cracking the Pixel 8: Exploiting the Undocumented DSP to Bypass MTE

How an undocumented DSP attack surface on the Pixel 8 becomes a path to bypassing Memory Tagging Extension.

HITCON 2025
View slides

Talk delivered at HITCON 2025 (Taipei, August 2025).

Slides available on GitHub