It's been a run y'all! Enjoyed telling my story and the story of what we've built over the last quarter century this morning to the Intel and invitee audience at Intel Security Conference 2021. Thank you to the organizers for the opportunity! #iwork4dell
Think I have tested all scenarios now with the Dell Bios Configuration with Intune, including delete and reinstall. Blog post coming in the weekend!
And yes, the password is available after deleting the Intune object. Wish we had similar for LAPS, BitLocker.
#MSIntune#Dell
Findings won’t be made public until about February. And even then, fixing flaws in these digital constructs — whose inner workings are neither wholly trustworthy nor fully fathomed even by their creators — will take time and millions of dollars. #defcon https://t.co/JMKxykWmcE
🚨Breaking - Hacker Jeopardy is moving to Track 1! Go to Track 1 tonight for Hacker Jeopardy. #DFIU and sit alone in the wrong place.
Hacker Jeopardy. 8pm. Track 1. TIA.
By popular demand, our #DEFCON31 cryptography puzzles are now online for you to solve. Sharpen your cipher skills and (if you are here at the village) bringing us a full set of correct answers will win you prizes!
Additional puzzles from past years in the thread.
#DEFCON31 I’ve lost my beloved black silk bomber jacket. Size large. Brand : DSTLD. 100% silk. Silver zippers.
💵 $200 reward 💵
Please take it to defcon lost and found. Room 107 in Caesar’s forum. RT for help!
The intersection of product security and security products and their contribution to overall "device trust" has always been interesting to me in my career.
I wrote some words about this with @ericbaize recently: https://t.co/kwWmNm7ZVt #iwork4dell
PPLs (aka "not a security boundary") are getting some new protections in Windows 11. One of them fixes a technique documented by @elastic last year where they "sandbox" Windows Defender by modifying its token: https://t.co/kt6bl3czjN
“0-days are not the problem. The problem are the lame attacks still working for attackers.”
“…using techniques that a lot of people talk about on YouTube”
😣
@dcuthbert@BlackHatEvents
“People posting GPT answers to stackoverflow to scoop the points without knowing if the answer is actually correct” is one of those problems that’s too obvious to even foresee https://t.co/eDfa2zu9Wt
🧵"Twitter 2.0" is trending.
I'm a foremost expert on this and let me tell you what you should do: quit, take the 3 month severance with your friends, and build the 2.0 version yourself. Musk will give up and buy your company in a couple years.
Check me out on Mastodon if you want: https://t.co/LYf40ceLDq
The good news is I got my preferred handle now. The bad news is I got my preferred handle now.
Today the United States National Security Agency (NSA) announced they will be making a strategic shift to memory safe programming languages. The NSA suggests organizations explore such changes themselves by utilizing languages such as C#, Go, Java, Ruby™, or Swift®
tl;dr ew