The worst bugs are the ones where the code mostly works. Low-level AI coding is so complex that I (an the AI that I write code with), produce an annoying number of them.
10.05.2025 00:32 β π 25 π 4 π¬ 2 π 1@vtl0.bsky.social
Hypervisor Enjoyer. Security @ MORSE
The worst bugs are the ones where the code mostly works. Low-level AI coding is so complex that I (an the AI that I write code with), produce an annoying number of them.
10.05.2025 00:32 β π 25 π 4 π¬ 2 π 1You asked, we delivered: Binary Ninja 5.0 brings major iOS reversing upgrades! DYLD Shared Cache is now a first-class feature, with up to 18x faster performance and way smarter analysis across the board. binary.ninja/2025/04/23/5...
24.04.2025 19:44 β π 12 π 5 π¬ 1 π 0[Blog] This ended up being a great applied research project with my co-worker Dylan Tran on weaponizing a technique for fileless DCOM lateral movement based on the original work of James Forshaw. Defensive recommendations provided.
- Blog: ibm.com/think/news/f...
- PoC: github.com/xforcered/Fo...
Wrapping up our COM hijacking series! π
In the final part, we discuss a custom IPC protocol, use a registry write to gain SYSTEM privileges, and explore Denial of Service attacks on security products. π₯π»
Don't miss it! neodyme.io/en/blog/com_...
Screenshot showing the execution of the proof-of-concept named PowerChell in comparison to a typical PowerShell prompt. In particular, it shows that PowerChell is able to bypass the Constrained Language Mode (CLM).
In this blog post, I explain how I was able to create a PowerShell console in C/C++, and disable all its security features (AMSI, logging, transcription, execution policy, CLM) in doing so. πͺ
π blog.scrt.ch/2025/02/18/r...
Cicada from HackTheBox is a really nice easy introduction to Windows / Active Directory exploitation.
15.02.2025 15:00 β π 4 π 3 π¬ 0 π 0github.com/AFLplusplus/... π
LibAFL π€ Unicorn
#LibAFL #π€ #Unicorn
by @henri2h.bsky.social
Learn how hyperlight can create virtualization-based sandboxes for WASM applications:
12.02.2025 17:17 β π 26 π 11 π¬ 0 π 1πͺIntroducing HyperHook! πͺ
A harnessing framework for snapshot-based #fuzzing using Nyx. βοΈ
HyperHook simplifies guest-to-host communication & automates repetitive tasks, making snapshot-fuzzing easier & more efficient!
π Read more: neodyme.io/en/blog/hype...
Iβm very excited to announce that we at V8 Security have finally published our first version of Fuzzilli that understands Wasm!
Go check it out at https://github.com/googleprojectzero/fuzzilli.
While we still have a way to go in improving it, we think it shows a promising approach!
In case if you wonder what broke #ProcessHollowing on Windows 11 24H2, I have something for you: hshrzd.wordpress.com/2025/01/27/p...
26.01.2025 23:55 β π 58 π 38 π¬ 0 π 1Profile Explorer is a tool for viewing CPU profiling traces collected through the Event Tracing for Windows (ETW) infrastructure on machines with x64 and ARM64 CPUs
github.com/microsoft/pr...
Lots of questions about the new admin protection feature in Windows so the MORSE team decided to do a writeup. Working on part 2 now, should be done in a day or two. techcommunity.microsoft.com/blog/microso...
23.01.2025 23:09 β π 10 π 7 π¬ 0 π 0the chinese netizens have put america in the ground
14.01.2025 19:20 β π 5148 π 1420 π¬ 334 π 831Just unrestricted an issue that shows a fun new attack surface. Android RCS locally transcribes incoming media, making vulnerabilities audio codecs now fully-remote. This bug in an obscure Samsung S24 codec is 0-click
project-zero.issues.chromium.org/issues/36869...
Kids these days don't even know how much opportunity they have to learn hacking from actual pros.
I know there is a lot of content out there, so it can be hard to find the good stuff. But 10 years ago you had to be lucky to find at least something.
Anyway, watch this π
Binary diff'ing is hard. But it's super powerful to apply markup from previous reverse engineering efforts to a new binary.
Binary Ninja is switching up how they match function signatures with WARP.
www.seandeaton.com/binary-ninja...
#binaryninja #reverseengineering #ghidra #ida #decompiler
Stability in AFL++/LibAFL is quantified by the percentage of edges in the target that are considered βstableβ. If repeatedly sending identical inputs results in the data traversing the same path through the target each time, then the stability is determined to be 100%.
24.12.2024 21:18 β π 1 π 1 π¬ 1 π 0Can you find an ITW 0-day from crash logs? Project Zero finds out
googleprojectzero.blogspot.com/2024/12/qual...
Important news: Microsoft is working to bring SMAP into Windows
www.youtube.com/watch?v=-3jx...
Great talk by Joe Bialek from MORSE team
Microsoft just released a tool that lets you convert Office files to Markdown. Never thought I'd see the day.
Google also added Markdown export to Google Docs a few months ago.
github.com/microsoft/markitdown
Cover for the book "Building a Debugger" from No Starch Press. A robot sits at a drafting table drawing a complex machine. In the top-right corner of the table, there is a post-it note with a bug drawn on it and crossed out
The cover for my book on how debuggers work is here!
Preorders are still 25% off: nostarch.com/building-a-d...
4 panel of a comic style drawing. First panel has a T-rex doing a standup comic routine with a speech bubble containing the words "What's the difference between a light bulb and a cybersecurity professional?" Second panel has these words in the speech bubble "A light bulb stops working when it burns out." Third panel has a drawing of sad looking dinosaurs while the fourth panel has the T-rex stand up comedian with tears on its eyes.
This is my annual reminder to y'all wonderful folks in infosec: please take care & you're important. Your physical & mental health are important aspects of your life. The work we do & the environments we work in can significantly impact these. There is no shame in taking care of yourself first.π
12.12.2024 01:00 β π 126 π 24 π¬ 1 π 4Originally the default wallpaper of Microsoft's Windows XP, this photo shows green rolling hills with a vibrant blue sky and white clouds in the background. Charles O'Rear took the photo in California, USA.
We've always been a fan of blueskies.
04.04.1975 12:00 β π 11865 π 2119 π¬ 652 π 657"We're ensuring this platform will enable security solution providers to have the access they need to detect and respond to threats without introducing complexity into the kernel,
www.darkreading.com/endpoint-sec...
Want to help build Binary Ninja this summer? Our 2025 summer internship application process is live!
A squirrel perched on a thin tree branch surrounded by yellow leaves, holding a small piece of food in its front paws. The squirrel faces the camera directly, with its bushy tail visible behind it. The background shows a clear blue sky.
Chunky boi
02.12.2024 12:50 β π 231 π 13 π¬ 7 π 2Microsoft using yugioh card on hacker "that's not a security boundary"
01.12.2024 16:02 β π 176 π 17 π¬ 6 π 1