I'm thrilled to announce that I'll be interning at Apple this summer, starting in a week!
To the friends I've made and the people I've learned from along the way: thank you. This wouldn't have happened without you.
https://t.co/8YFQDAzwTy
We have some exciting news to share: @blacktop__ is joining Calif to work on a range of R&D projects focused on Apple and AI security.
If you work in the Apple security ecosystem, he’s already a household name. He’s the creator of:
* ipsw – the ubiquitous Apple firmware analysis tool: https://t.co/S763637ijE
* darwin-xnu-build – reproducible XNU kernel builds: https://t.co/Mel4PcLgQs
* ipsw-diffs – automated diffing of Apple releases: https://t.co/96A0D1Zu1Y
* The only public deep-dive on Apple’s Lockdown Mode: https://t.co/bCzLZrDlIM
His tooling is so good that even Apple engineers use it. If you do reverse engineering, chances are you’ve touched his Rust headless IDA MCP server: https://t.co/kkWMn4sGRX.
People have literally collected CVEs and bug bounties just by digging through the diffs produced by his tools.
With @brucedang, @Little_34306 and now @blacktop__, we're building a serious Apple security force at Calif. We’ll have more announcements in this space soon!
If you're interested in Apple security, AI, automated bug discovery, reverse engineering, or hacking, we’re hiring: https://t.co/6EjxrXKetQ.
🔺NEW: iPhone and iPad are now the first and only generally-available devices to meet the exacting security requirements for handling classified NATO information. https://t.co/sKOHGeqaoD
🔺New security-focused developer event on March 5 at Apple Park: featuring sessions on Memory Integrity Enforcement, new tools in Enhanced Security in Xcode, Apple’s defensive security engineering approach, Swift adoption in security-sensitive code, and how to apply all these techniques to protect apps. Sign up: https://t.co/RBLfFQR6zQ
🔺This is the first talk I've given in 6 years – featuring formal verification of post-quantum cryptography, the evolution of the Secure Page Table Monitor, a view into Memory Integrity Enforcement, updates to Apple Security Bounty… and a personal note.
The slidedeck to our talk, Crash One: A Starbucks Story - CVE-2025-24277, with @gergely_kalman from @hexacon_fr and @objective_see#OBTS is available from the link below.
It was a macOS vulnerability impacting the crash reporting process where we could achieve LPE and sandbox escape.
https://t.co/FpOf67MBEP
Are you interested in bleeding-edge microarchitecture offensive security research, with a concrete impact on user security?
We have just opened a Microarchitecture Security Internship position at Apple, in SEAR LASER! ❤️🔥
Apply here: https://t.co/al2STgp3tL