Our team found a Poseidon hash collision in Solana's Agave VM crypto syscall.
Two distinct byte inputs → same field element → same Poseidon output. Affects both Agave and Firedancer via implicit padding paths.
Full write-up:
https://t.co/zYoJaGdeUE
Good job by @Ectari0
Day 3 (out of 4) of our "Reversing Modern Binaries" training at REcon Montreal is kicking off!
👨🏫The energy and insights from this group have been amazing.
Couldn't join us in Montreal? Your next chance is coming up at the @POC_Crew conference in Seoul this November! 🇰🇷
🚨 FINAL CALL! There are only 5 days left to get the early-bird discount. Register before June 30th to get the discount.
Discover the Seoul training program👉 https://t.co/JII4jujopf
Register👉https://t.co/7bZaAuOCy1
#ReverseEngineering #InfoSec #Training #REcon #Montreal #POC2025 #Seoul #Rust #Go
Uncovering Hidden Threats in Ethereum Virtual Machines 🚨
At #Zer0Con2025, we exposed critical vulnerabilities in Ethereum Virtual Machines (EVMs) using fuzzing. Here’s what you need to know 🧵👇
#Ethereum#EVM#Fuzzing#BlockchainSecurity
🔥Introducing Arion🔥
A high-performance C++ framework for emulating executable binaries.
Based on Unicorn and inspired by Qiling, Arion offers an easy-to-use interface and super low execution times making it a great ally for fuzzing or other applications.
https://t.co/EdIIaJqt91
Come learn how to Reverse Modern Binaries on June 23-26. Rust binaries (Days 1-2) and Golang binaries (Days 3-4) by Daniel Frederic & @mhoste1 from @FuzzingLabs. For more information visit https://t.co/fM3AzEPtXM #reverseengineering#rust#golang
[#Zer0Con2025] - SPEAKER 4⃣
👬 Bryton Bernard & Mathieu Hoste from @FuzzingLabs - Ethereum's Achilles' Heel : Attacking and Fuzzing EVMs for FUN(and Profits)
‼️ FuzzingLabs will be at @reconmtl 2025 in Montreal this June
Join us for 3 hands-on, in-depth trainings from 23rd–26th of June 2025.
🔍 Reversing Modern Binaries : Practical Rust & Go Analysis: https://t.co/iIhV1fXEc9
🛠 Fuzzing Windows Userland Applications: https://t.co/EesDXUEnmT
🦀 Rust Development for Cybersecurity: https://t.co/tshLBDIBFK
Secure your spot now!
At @FuzzingLabs , with @mhoste1 we found vulnerabilities on an EVM, we share with you an article about one of the vulnerabilities found.
https://t.co/yBffDPyZmN
Just wrote a new blog post about rust symbol recovery, this time targeting cross-compiled targets !
Here is the blog post: https://t.co/jHAArRyPPs
I also updated rustbinsign/rustbininfo to identify and handle MinGW targets accordingly.
Hi friendz ! 🧙♂️
- Prochain Stream ce Mardi 18 Juin à 21h ! 🕯️
- Topic : Reversing RUST Vs CPP Vs C ! 🤔
On part sur 2h+ sur quelques bases, les différences fondamentales entre les technologies proposées, et les approches de nos différents invités, à savoir @N0Fix, @mhoste1, et @lxt33r ! 😎😎😎
A très vite pour se casser le crane sur du low level ! 🤙🛠️
https://t.co/nbTLA46NbH
https://t.co/WewFD42weP
I just wrote a blog post and made a tool about my journey into recovering symbols from KrustyLoader, a malware written in rust @ektoplasma_ from @Synacktiv analyzed not long ago. Check it out if you are into rust reverse engineering ! 😁
https://t.co/NNRM0l2oXZ
This weekend we played @HacksInTaiwan CTF 2023. The challenges were amazing and we finished 13th. Congratulations to @Water_Paddler and @pb_ctf for absolutely nailing the scoreboard 💪
Cerberus v1.2 is out ! The tool can now recover symbols of stripped Go binaries in addition to Rust. The rate is still of ~90%. 🔥I am open to any feedback🔥
https://t.co/hU6HPn7GnH