... on AMD CPUs, which bypasses VM isolation, kernel-user boundaries, and more - with impact similar to Meltdown/MDS/Foreshadow. This discovery marks a shift from manual discovery (Spectre/Meltdown era) to automated detection of microarchitectural flaws.
[2/2]
15.07.2025 12:33 β π 0 π 0 π¬ 0 π 0
π¨After a year-long embargo, our S&P paper is finally out!
πPaper: aka.ms/enter-exit-l...
πAMD Advisory: aka.ms/AAwztqx
πSummary: We develop the first tool to test security boundaries for uarch leaks -with no prior knowledge of CPU internals. It discovered Transient Scheduler Attack (TSA)... [1/2]
15.07.2025 12:32 β π 6 π 2 π¬ 1 π 0
Prompt Injection is a top risk for use of LLMs, where untrusted data can cause a system to misbehave or leak data. We're hard at work on deterministic solutions to prevent or bound the risk, and just published a paper on our innovative information flow control approach: arxiv.org/pdf/2505.23643
05.06.2025 20:34 β π 34 π 10 π¬ 11 π 5
so which conclave are they running, SGX or TrustZone?
07.05.2025 19:21 β π 56 π 11 π¬ 3 π 0
A powerful picture by the Economist. Somebody needs to have a serious talk with those white grandpas in the US.
Source: www.economist.com/interactive/...
17.04.2025 09:05 β π 2 π 0 π¬ 0 π 0
Russian negotiations 101: Always break your promises, but in a way that you can still claim you haven't *technically* broken your promises.
(screenshot from today's Economist briefings)
19.03.2025 09:48 β π 1 π 0 π¬ 0 π 0
taking my page tables for a walk
01.03.2025 21:11 β π 47 π 4 π¬ 4 π 0
I'm so proud of Zelensky right now. Someone standing up to the bully is a breath of fresh air after months of ignorant BS. And what comes next is scary. Genuinely scary
28.02.2025 19:01 β π 1 π 0 π¬ 0 π 0
One thing I really miss about tech Twitter in the heyday of 2010-2020 is people sharing links to interesting blogposts (usually from people just writing down what they learned or what tech they were exploring).
Those blog posts must still be somewhere there, but increasingly hard to find.
15.02.2025 13:12 β π 19 π 4 π¬ 1 π 0
Honestly, that's the best case scenario. Unless you have a morning meeting :)
15.02.2025 12:58 β π 1 π 0 π¬ 0 π 0
Recently found out that the Spotify Discover Weekly playlist can be connected to the Android clock and used as a morning alarm.
Literally life-changing
15.02.2025 10:46 β π 1 π 0 π¬ 1 π 0
now that DeepSeek has completed AI, we hope that Silicon Valley will turn its attention to the next best thing: investing in rural history museums
27.01.2025 15:44 β π 5302 π 759 π¬ 32 π 25
The Price of Intelligence - ACM Queue
Learn about the risks of hallucination, jailbreaks and prompt injection and current mitigations in our ACM Queue paper:
23.01.2025 19:26 β π 35 π 14 π¬ 1 π 0
Really cool and deep reverse engineering of speculative leaks in microcode
23.01.2025 14:49 β π 1 π 0 π¬ 0 π 0
If Trump is removing all environmental regulation, how about we undo the "memory safe languages" mandate? I mean, how is mandating "memory safe languages" compatible with freedom of speech anyhow?
Enough policing of speech! Raw pointers for raw milk, our youth needs to be hardened by strcpy.
22.01.2025 08:32 β π 46 π 7 π¬ 5 π 0
Aaaaany minute now. Any minute
21.01.2025 17:29 β π 0 π 0 π¬ 0 π 0
That sounds similar to what UseSec is doing this year
21.01.2025 09:27 β π 1 π 0 π¬ 0 π 0
Complete peace in Europe coming up in less than 20 hours from now. True story, guaranteed result
20.01.2025 22:59 β π 0 π 0 π¬ 1 π 0
That's the beauty of automated moderation. Works correct 100%, all the time ;)
20.01.2025 16:49 β π 1 π 0 π¬ 1 π 0
Apple Security Researcher | Informatics PhD | TUGraz Alumni | Pwnie Award 2022 | BlackHat Speaker | Power Analysis | Fault Attacks | ΞΌ-Architectural Attacks | https://andreaskogler.com/
Official account of the Microarchitecture Security Conference (Β΅ASC).
Cutting-edge research on #security in #microarchitecture contexts.
Next Conference: February 3, 2026, in Leuven, Belgium. https://uasc.cc
Host of Hardcore History. I do other stuff too. Find our (free) irregularity updated newsletter at https://dancarlin.substack.com
Website: www.dancarlin.com
Microarchitectural Security | PhD Student @ #CISPA
https://d-we.me
Troublemaker | Computer Architect | @Arm Servers Architect @Google | Former DE @RedHat | Former VP @Nuvia_Inc | Runner | Author | All views my own | #ArmServers
Weβve been personally testing and reviewing products since 2011 to help you shop smartly. When you buy through our links, we may earn a commission.
Associate Professor @ IMDEA Software Institute. Doing research on security at the hardware/software interface. Find me also at @mguarnieri@infosec.exchange
I make systemsπ±π₯οΈπ»βοΈ. Work at @apple ο£Ώ. Views are my own. saidmgani@infosec.exchange
https://twitter.com/saidmgani
Something something music theory.
they/them
Chilling online. I write a newsletter called Garbage Day.
Creator of Darknet Diaries.
Verification: https://twitter.com/JackRhysider/status/1675298532406984707
Core OS and systems security research @Google Zurich. Ex-{UNSW,ETH,MSR}. Mostly π¦πΊ. He/him.
I talk about Rust, verification, cryptography, programming languages⦠and pets
Software researcher at https://cispa.de, working on #Fandango, #S3, #FuzzingBook, #DebuggingBook. Testing, debugging, analyzing, and protecting software for a better world. Find me at https://andreas-zeller.info/
Fuzzing; Vulnerability Research;
Deep Learning; Reverse Engineering
Training & Publications @ http://fuzzing.io
Hacking the planet since 1995
Undercurrents.io BOFH
I'll stop the world and melt with you
Writer for WIRED. Author of SANDWORM. New book, TRACERS IN THE DARK: The Global Hunt for the Crime Lords of Cryptocurrency, out now. agreenberg@wired.com. Andy.01 on Signal.
Journalist - cyber/natn'l security. Speaker. Georgetown adjunct prof. Author - COUNTDOWN TO ZERO DAY: Stuxnet and the Launch of the World's First Digital Weapon
Signal: KimZ.42
https://www.zetter-zeroday.com
actually just on Mastodon: https://discuss.systems/@adrian