We have a special episode this week, where we interview @JohnCarse of @getsquarex. We talk about John's industry experience, history of browser security, and the work SquareX is doing on detecting and mitigating browser-based attacks.
Check it out: https://t.co/TTv3pySGgX
IT'S NEWSLETTER DAY 📰
New information about Apple Exclaves
@dayzerosec drops some Hypervisor RE
Representing type lattices capactly from @tekknolagi@XenoKovah clarifies the ESP32 "backdoor"
+ Jobs and MORE 👇
https://t.co/9ymMPX4pPw
I've published a write-up on reversing and analyzing Samsung's H-Arx hypervisor architecture for Exynos devices, which has had a lot of changes in recent years and pretty interesting design. Hope you all enjoy :)
https://t.co/KTJ5IKfSfP
Recon Training 23-26 June 2025: KVM to Mobile Security Platforms - Attacking Hypervisors with @SpecterDev and zi from @dayzerosec (4 days) For more details https://t.co/3MM2tIkcyS
My @dayzerosec co-host zi and I are giving our 1st training @ https://t.co/Na25TGbLQE with a focus on attacking security hypervisors! Trainings are something we've wanted to do for a while.
Take a look and share to those who would be interested :)
https://t.co/zM6QJjPcrk
@byt35tand3r @Freyxfi I (zi) made it kind of as a consequence of all the feeds I started following and filtering as part of prepping our podcast. Someone in our discord joked about the domain and I ran with it.
@defcon0007 @Freyxfi We sell the shirt on our shop, https://t.co/fFUQJtE7oF I now see I didn't add that link back on when I refactored the site over the summer
@thebigbadme Not really, it was sort of a lucky discovery due to crashes and observed side-effects. Nobody observed it from the commits or the code until after the fact, though it does help for analyzing after the fact.
The xz package, starting from version 5.6.0 to 5.6.1, was found to contain a backdoor. The impact of this vulnerability affected Kali between March 26th to March 29th. If you updated your Kali installation on or after March 26th, it is crucial to apply the latest updates today.
I am once again beginning my search for cool hacks and security research for this weeks podcast. Come stop in and share your content or just hang out at https://t.co/QIvpzfT4iB ~zi
What a surprise, I'm going live again to prepare for this weeks podcast. Stop by and get a preview of this week's security research, ask questions or just hang out. https://t.co/GSLX19tvA4
Lets take a quick look at some more security research from the past week...going live in a few minutes to start going over podcast topics.Feel free to drop by with any links or just to ask questions. https://t.co/GSLX19tvA4
I'm (zi) going live on Twitch in a few minutes taking a look at another week's worth of security research, exploits, and vuln disclosures in preparation for the upcoming podcasts.
Hopefully we've got some fun hacks and vulns to take a look at this week. I'll be going live in a few minutes to start looking at topics for this weeks podcast episodes. https://t.co/Mtwf7wHdsI
Another week of security research to checkout on stream. Going live in a few minutes, stop by for a preview of the upcoming episode, or just to ask questions and share cool research. https://t.co/GSLX19tvA4
I'm going live again with another stream checking out vuln disclosures and research from the last week as I get topics together for this week's episodes. https://t.co/GSLX19tvA4