Preliminary research
uXSS on Samsung Browser (CVE-2025-58485 · SVE-2025-1879)
AI-collected research leads through 6 October 2026, including bounded month-by-month reviews of selected social and community sources from January through September. Unranked, incomplete, not community-vetted, and subject to change.
Reverse-engineers Samsung Internet intent handling to distinguish a guarded Bixby path from another exported activity accepting a javascript: URL in the existing tab. The final route differs from the exploratory Frida bypass, illustrating why alternate entry points must be checked independently of the first observed guard.
Record
- Researcher
- Omid Rezaei and Yashar Shahinzadeh
- Published by
- Voorivex
- Date
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Omid Rezaei and Yashar Shahinzadeh, first published at the original source. Preserved copies are kept so the citation survives its host.