Very excited to have these new features in Turbinia! The team has been working on this for quite a while. If you're interested in automating and scaling your forensic processing, check it out!
Badgey is back at Defcon and excited to see everyone at the con! If you see him around, say hi and ask him about the schedule and any upcoming talks you should miss!
#defcon#badgelife#badgey
Here it is, the first public exploit of Humanoid Robots from @d0tslash and me:
https://t.co/ptlHrAajU1
But this vulnerability is present in the whole new generation product line of @UnitreeRobotics . The vulnerability is even wormable, an attacker can not only take over the robot but also embed themselves on the devices and then infect the next devices in range.
The inaugural Cloud VRP ☁️ bugSWAT event was a record-setter 🏆: With 91 identified vulnerabilities resulting in ~$1.6 million in rewards, the event underscored the value of collaboration with external security researchers.
https://t.co/tnBpvRnkFM
And now for public release, check out our new song and video for “404 on the Dancefloor”!
https://t.co/XSMkhqn4cZ
https://t.co/eH5TWRUKAC
#hackermusic for #defcon 🕺🤘
As inspired by Dan Kaminksy’s early Defcon TCP Blackops talks, we are initially releasing the song only as audio over DNS. Streaming over DNS is an exercise for the listener :).
Here’s something to get you started:
dig -t txt 404-on-the-dancefloor.projectmammoth . com
New Turbinia release! Updates include report data & job and status filtering in the Web UI, API/Web/CLI options for output evidence and worker log downloads. New dev environment and a new codelab for analyzer dev, LLM analyzer updates and many other fixes! https://t.co/603o3G8tXg
The amount of money Google invests in security is mind blowing.
AFAIK that's the only company where nearly all RPCs between services within the datacenter are encrypted and there's almost no unencrypted data touching disk.
Are you looking for a way to easily deploy Turbinia and Timesketch DFIR Tools?
"Introducing OSDFIR Infrastructure: Automating Deployment and Integration of Open Source DFIR Tools to Kubernetes":
https://t.co/SUYZz8wTI6
In the spirit of "this talk could've been a tweet", I just pushed a button:
#BinDiff is now open source.
- Snapshot release, no major new functionality
- Release binaries later today or tomorrow
- This is my 20% and I won't we able to act on PRs until end of Q4 (OOO traveling)
Are you looking to warm up your #CTF chops before #defcon? The 10 challenge music-themed Mammoth mini-CTF is running now and is the perfect byte sized CTF to try today! Details at https://t.co/ne4RoHxmfT.
This music-themed mini-CTF starts tomorrow! If you like encryption keys hidden in your MIDI files, steganography in your sheet music or even trying to convince a universe controlling AI to give you a key over the phone, you should come check it out and have some fun!
Just four more days until the Mammoth mini-CTF begins! If you like music and puzzles/hacking/challenges you should check it out and play along! For the full details see here: https://t.co/XmqTWkVOts . Help us spread the word!
Our latest song literally has “the sound of an exploit” in it! Here’s MIDI generated from the instructions traced while software is being exploited by a buffer overflow!