A fascinating development for the offensive industry:
www.washingtonpost.com/technology/2...
@repne.bsky.social
Currently focused on Red Teaming/Adversarial Simulation @ Google. Previously App Sec, Malware RE and Threat Intel. I also like video games and general tech.
A fascinating development for the offensive industry:
www.washingtonpost.com/technology/2...
This esp32 "bluetooth backdoor" doesn't sound very different from what @naehrdine.bsky.social + crew found in bcm43xx to develop github.com/seemoo-lab/i...
09.03.2025 01:16 β π 4 π 0 π¬ 0 π 0A watched fuzzer never boils...
06.03.2025 03:50 β π 0 π 0 π¬ 0 π 0I got Linux running in a PDF file using a RISC-V emulator.
PDFs support Javascript, so Emscripten is used to compile the TinyEMU emulator to asm.js, which runs in the PDF. It boots in about 30 seconds and emulates a riscv32 buildroot system.
linux.doompdf.dev/linux.pdf
github.com/ading2210/li...
Positive Technologies has developed a new attack that exploits the SD Express standard to gain access to a device's memory through its SD card reader
The DaMAgeCard attack exploits the fact that the new SD Express standard can operate in both SDIO and NVMe
swarm.ptsecurity.com/new-dog-old-...
I should write a bittorrent client
30.11.2024 07:26 β π 1077 π 20 π¬ 60 π 8Heh, cool amanita.us-east.host.bsky.network/xrpc/com.atp...
25.11.2024 14:51 β π 10 π 2 π¬ 0 π 1How does the new iOS inactivity reboot work? What does it protect from?
I reverse engineered the kernel extension and the secure enclave processor, where this feature is implemented.
naehrdine.blogspot.com/2024/11/reve...
Looking at this list of 2023 routinely exploited issues It's always interesting to look at the split between memory safety issues and bug classes. https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-317a
15.11.2024 03:42 β π 0 π 0 π¬ 0 π 0A brief history of Cyrix https://www.abortretry.fail/p/a-brief-history-of-cyrix
14.11.2024 06:32 β π 0 π 0 π¬ 0 π 0Anyone got a sample?
14.11.2024 00:56 β π 1 π 0 π¬ 0 π 0Gotcha, yeah, definitely not a hermetic build :)
11.11.2024 11:48 β π 1 π 0 π¬ 1 π 0When then I think it's compile time evaluated, not runtime, right?
11.11.2024 11:37 β π 0 π 0 π¬ 1 π 0Talks from the Hexacon 2024 security conference, which took place earlier this month, are available on YouTube
www.youtube.com/playlist?lis...
Great presentation on macOS sandbox escapes https://github.com/jhftss/jhftss.github.io/blob/main/res/slides/A%20New%20Era%20of%20macOS%20Sandbox%20Escapes.pdf
11.11.2024 04:57 β π 0 π 0 π¬ 0 π 0Is it actually building malware.rs or is it just retrieving the contents of a text file? Sorry, I don't know rust but it seems to be the latter?
11.11.2024 04:19 β π 0 π 0 π¬ 1 π 0You can do some magical things with paths on Windows. If you havenβt seen it before JonasLykβs work on βwebdav based reflective loader/per process devicemap based dll injector POCβ is a work
of art. Search his handle + webdav on X for some commentary
github.com/jonaslyk/tem...
I remember when we only had to worry about Dr Watson :) www.wired.com/story/sophos...
11.11.2024 03:57 β π 2 π 0 π¬ 0 π 0New here but I'm feeling optimistic that this might actually replace what infosec twitter used to be
11.11.2024 03:37 β π 18 π 2 π¬ 2 π 0