Agradezco los mensajes de apoyo, las denuncias de la comunidad académica y científica, a publicaciones que expusieron mis datos personales y el respaldo institucional y gremial recibido con celeridad. En tiempos de violencia y persecución, la solidaridad es un acto de resistencia
🔥 No fuzz drivers needed. Our paper on injecting fuzzers into running systems at user-defined amplifier points (in-vivo fuzzing) was accepted at #ICSE25!
📝 https://t.co/kxmleFgCuM
🧑💻 https://t.co/f8tcqur3Gm (subject to AE)
//Collab w/ @GallandOctavio (former #MPI_SP intern).
The xz package tar's were backdoored. Only discovered because the backdoor slowed down sshd enough for Andres Freund to investigate.
Consider the case where the backdoor didn't cause perf issues... How long would this have gone undetected?
https://t.co/qO05dVP7vU
Are you an undergrad or recent graduate interested in a summer internship doing awesome research and playing CTF at our lab at ASU? Our summer internship applications are now open! Apply at https://t.co/lD0Ml8mIwd and choose my project :-)
CS@max planck is inviting applications for PhD.
We especially encourage applications from students who wish to explore research across the CS spectrum before committing to a topic and advisor.
🗓️ Deadline: 31st Dec (for fall intake).
ℹ️ More infos: https://t.co/GquFe3hA18
Siempre que se votó con el sistema de MSA (por ejemplo, en 2015 en CABA), se pidió que el DVD fuera retirado de la máquina e incluido en la documentación de la mesa, para posibilitar que ante un reclamo pudiera ser verificado y auditado.
¿POR QUÉ ESTA VEZ NO SE HACE ASÍ?
ATENCIÓN presidentes de mesa de CABA
Según la documentación oficial, deben introducir en la computadora el DVD con el software para votar con #BoletaÚnicaElectrónica.
Pero hay una irregularidad: no les dicen que al finalizar LO SAQUEN y lo incluyan con el material de la mesa.
I made a Yara rule and some python scripts for detection and sanitization of Acropalypse (CVE-2023-21036) affected PNG images: https://t.co/esxkHBytB3
#acropalypse
It’s unlikely that we’ll ever see a zombie-like plague like the ones we know from video games, TV shows and movies, but infections with some similarities do lurk in nature. https://t.co/3hpGOVE2jb
Los espero mañana en el Konex para charlar un poco sobre como funcionan los routers hogareños en @nerdearla. Llevo algunos para los que quieran probar una vulnerabilidad que encontramos en @faradaysec!
So an AMD engineer and 2 Google engineers walk into a bar... and write an article about how "Hello World" in #Python works.
The article turns out to be 26 pages. From Python, through C, WinAPI/Kernel, font rendering, to GPU.
Enjoy!
https://t.co/rH5l9M9ARe
https://t.co/QOeJR5UfTY
Looking to recruit
👩🎓 PhD students and
👩💻 interns
in Software Security.
Strong background in one of:
* Statistics, data science,
* ML (causality, security flaws),
* Program analysis, system building,
* Vuln. discovery, CTFs.
Reach me via https://t.co/XDoMZQIimK
RT appreciated.
Apologies for the delay ! We've updated the site with details on Realtek eCos SDK vulnerabilities reported at DEFCON30 by FaradaySec - https://t.co/glopNFoGBB
The RTCSec newsletter for August is out about a buffer overflow in Realtek's SIP ALG CVE-2022-27255, SELinux policies for Kamailio/OpenSIPS, presentations about XMPP stanza smuggling, Discord and Element RCE, the tweet of the month and more: https://t.co/YTiheDgOny
Hello hackers! Wanted to try @pwncollege but never got past the expectation of x86 Assembly knowledge? Now you can! We just launched a new Assembly Crash Course lecture series to complement last year's Assembly Refresher challenges! Check it out: https://t.co/DlfwXOuOEl
It was great giving the talk at @defcon, plus I'm still amazed by all the positive feedback we've received so far. In case you missed, here's the slides and resources for the talk: https://t.co/dkFFpVFD0Z. Many thanks to @ogianatiempo@pastaCLS@ekio_jp.
#DEFCON30 || Los 4 investigadores que trabajaron en esta vulnerabilidad, conocida como CVE-2022-27255, son:
🏴☠️@ogianatiempo
🏴☠️@GallandOctavio
🏴☠️@pastaCLS
🏴☠️@ekio_jp
Acá se puede leer la investigación completa ➡️https://t.co/0hKaqiKS8Y
#DEFCON30 || Hackers argentinos de @faradaysec descubrieron una falla severa en el router más vendido de América Latina ☠️
El atacante puede tomar control del dispositivo, depositar código malicioso y hacer lo que quiera 💻
Hablamos con @ogianatiempo👇
https://t.co/i4RmA0AWQO
Excellent offensive security research on Realtek's eCOS SDK. We'll make sure to update the https://t.co/2xGCiryeu7 website this week and share some of our notes on the subject.