Back home after @WarConPL! It has been - once more - an amazing last edition 😜
Great part of small conferences? You don't just attend talks, you hack, speak, rant, dance, drink, party, eat, build, ... 1/4
What a great experience this year's @WarConPL was! Amazing conf, amazing enlightening people and also gave my first lighting talk.
Still in Warsaw today with some homies, hmu if you want to hang out ^^
Claude Code 4.8 is insane.
i know literally NOTHING about coding. ZERO. and i just built 3 fully functioning web apps in 30 minutes.
http://localhost:3000/
http://localhost:8000/
http://localhost:5000/
check it out.
Well that was a ride! Happy to share that I've been awarded with the OMSE certificate after successfully completing the "Offensive Mobile Security Expert" course and exam by @8kSec .
Thanks to @ShielderSec for this training opportunity and to @8kSec for their top-notch content!
The worst LPE in years on the kernel drops and we're hosting a CTF next week.
Want to participate in an incredible hacking camp in Rome next october, hosted by our friends @cybersaiyanIT ?
Get on board and qualify your team!
https://t.co/ELgTqhxTZg
https://t.co/cKUIfjgMhW
Can a hostile container sneak past your eBPF tracing? Sometimes, yes.
With @OSTIFofficial & @CloudNativeFdn we audited Inspektor Gadget - 3 vulns (fixed), 6 hardenings, 6 bypasses (io_uring, openat2, jumbo frames…).
Work by @ndaprela & @suidpit👏
🔗 https://t.co/LktKoqX7it
After a long break from bug bounty I decided to give it another try, and my latest interest in Android apps definitely paid off!
Cheers to @realcyberdart for the opportunity and quick responses o7
@evilsocket I gotta admit, skimming through oss-fuzz for low coverage/poorly tested projects has been prolific for me! Definitely a fun way to exercise and learn lots of things
#KubeCon EU starts today and guess what? Our very own @suidpit will be on stage with a panel about the @kubernetesio Security Audit we performed during 2025 with the support of @OSTIFofficial!
🗓️ March 25 - 16:45 CET
📍 Hall 8 | Room F
Attending @1ns0mn1h4ck?
Meet @not4nhacker@Luk3ros and @Sev1rus from our AppSec and Red teams!
They are eager to discuss about breaking complex authentication implementations and relaying all the things to DA!
Love breaking things just to see how they work? 🐛🔨
A @ShielderSec delegation is on the ground at @fosdem, and we're looking for fellow hackers and security researchers.
If you are passionate about securing the Open Source world, we definitely need to talk!
Want to learn more about our approach into auditing complex libraries and writing cool exploits?
Attend @OSTIFofficial's meetup where our very own @Th3Zer0 and @suidpit will talk about the "Security Audit of OpenEXR"
🗓️: Dec 02
🕗: 20:00 CET
RSVP: https://t.co/j3slgeZ4Pq
Attending #theSAS25? Meet @Paupu_95 for his PAM pwnage talk!
It won't be recorded and it might *wink wink* contain a cool drop you don't want to miss 👀
Last week @Apple released MacOS 13.4 which contains a fix for a vulnerability @suidpit exploited to escape the Sandbox.
Update now and stay tuned for the technical details!
Ref: https://t.co/fSRCbM8WbQ
🚨 New Open Source Audit Alert! 🚨
Shielder, with @OSTIFofficial & @CloudNativeFdn, audited @karmada_io:
🔍 6 issues found (1 high, 1 medium, 2 low, 2 info)
✔️ Most fixed, others planned.
🗣️ to @suidpit and @Th3Zer0
Full details in the blog post!
https://t.co/mkRiqw7joX
Attending @TheSAScon in the beautiful Bali🏝️?
Make sure not to miss @suidpit's talk about his novel research on the macOS 🍎 sandbox and how to bypass it.
🗓️ Wednesday, October 23 - 15:10
Our very own @suidpit will present his novel #macOS research at @TheSAScon - if you want to learn more about the macOS sandbox and how to escape it make sure to be in Bali 🏝️ from Oct 22 to Oct 25 at #TheSAS2024
🍎 With many #macOS security mechanisms at work, one might wonder how malware manages to bypass them. Get ready for a deep dive into macOS security architecture and novel evasion techniques during Pietro Tirenna's (@suidpit) talk at #TheSAS2024.
🚀 Secure your seat: https://t.co/FNtauvMADV