Paper
SoK: All You Ever Wanted to Know About Bootloader Security But Were Afraid to Ask [IEEE S&P 2026]
https://t.co/hCB75Jf40I
ブートローダのSoK論文。EDKII, CoreBoot, GRUB, U-Boot, MCUboot, SeaBios, Windows Boot Manageなどが挙がっていて面白そう。
githubにBootloader Collectionがある。
https://t.co/lHlwOuffFn
記事メモ
IntelとAMD主導のx86向けAI拡張命令「ACE」、その詳細が判明
https://t.co/WNeI0btuuS
AI Compute Extensions (ACE) for x86 ホワイトペーパーの解説。
https://t.co/ZsUipG4jhX
ZMMレジスタ(AVX512用512bitレジスタ)を利用した外積(Outer Product)らしい。
@LxlxIxlxlxL@Oppenheim3r In the spirit of helping others learn and enjoy this fascinating technology, I have been working on free materials. Hopefully, I can start the beta this year, and you will find it helpful.
https://t.co/ibJhawki8C
After an embargo of 256 days, I'm happy to reveal our newest work: we present TREVEX, a black-box CPU fuzzer that detects transient execution vulnerabilities in an automated manner. Running TREVEX on AMD, Intel, and Zhaoxin CPUs discovered multiple new CPU vulnerabilities!
Don't want to cry wolf just yet, but this magenta-boxed part of LOTS of Insyde H2O-based UEFI FWs is highly suspicious, even if they are currently empty.
Neither BootGuard nor FlashDeviceMap covers those volumes, and presence of PEI deps section suggests they are processed.
UEFI firmware vendors still take 10+ months on average to address issues after responsible disclosure, often regardless of severity or fix complexity.
These vulnerability classes aren’t new. But AI is accelerating security research, and legacy response timelines no longer reflect reality.
Security strategy needs to evolve to match the new pace of vulnerability discovery and exploitation.
A recent HP case illustrates the gap well (reported last April): CVE-2025-10451 / BRLY-DVA-2025-012.
Full details: https://t.co/AMWlDAI49g
Before its launch, we audited @whatsapp's Private Processing TEEs and found 8 high-severity issues (patched). The enclaves yielded to injected config files, unmeasured ACPI tables, spoofed firmware levels, and stale attestation reports. 🧵
Looks like there's a bug on X DM - replies aren’t showing up on my side, and it doesn’t seem fixed yet.
If you’ve messaged me and I haven’t replied, sorry about that. If you have another way to contact me, I’d appreciate it if you could reach out there
https://t.co/sF8Hvspa3J