5/10 Are We Susceptible to Rowhammer? An End-to-End Methodology for Cloud Providers https://t.co/Rq2mPwMEL8 Rowhammer again! You can actually do much better and hammer DRAMs at an optimal rate. @LCojocar et al. @_onurmutlu_@IEEESSP
@sirmc@vu5ec@IEEESSP Thanks! This would not have been possible without the Rowhammer knowledge that is available in @vu5ec. I think everyone helped me getting over the reverse-engineering-induced gloominess :-).
Still a few days to apply for the assistant/associate prof position in security at @vu5ec (https://t.co/xKzRCZfipI). Explicitly also open for promising _young_ researchers. Also in other areas of security. Do not feel shy about applying!
https://t.co/prWKP8Jc08
Deadline: 22/02
@kavehrazavi That's true. And sometimes, reverse engineering doesn't get enough credit in our work. E.g., "We bypassed the memory initialization by reverse engineering and modifying the parts of the binary BIOS code that performs DRAM initialization" hides many man-hours work.
@kavehrazavi Reverse engineering can be depressing and quite solitary. The support from all of you @vu5ec was always there :-), I appreciate the encouragement that I got throughout the process. It was painfully fun!
We’ve released the first Security Overview for the Apple T2 Security Chip! Mac secure boot, storage encryption, and more, e.g.: “Mac portables with the T2 chip have a hardware disconnect that ensures the microphone is disabled when the lid is closed.”
https://t.co/m1OestLPAC
Have a look at @Microsoft Server Board Schematic and super complex #PCB Layout designed in @Cadence. I will point out some interesting stuff. Watch the Part 1 here: https://t.co/52fHElhwkm
The Intel 8087 floating point chip contained an unusual high-density ROM. It stored 2 bits per transistor by using four different transistor sizes. I look inside the chip and explain how it works in my article:
https://t.co/3cuGa74SHC
My die photos of the @Intel 8087 floating point chip from 1980. Almost all floating point is based on this chip and today's desktop computers still run 8087 instructions. I reverse engineered the bias generator inside and explain how it works.
https://t.co/gzK8Y6UXAd
Wanna hear or learn about #avatartwo, the orchestration framework for dynamic binary analysis (https://t.co/di6VSB5YOq)? Talk to me at BH/DC, I'll have some goodies! #bhusa#defcon
"Screaming Channels" paper #CCS18/@BlackHatEvents is online https://t.co/q8Eep9Dl5c
Electromagnetic side channels from a CPU can leak to a radio transmitter. CPU and radio transmitters are often integrated (think WiFi, BlueTooth)
We recover an AES key from 10 meters on a BT chip