Independent production company, specialising in digital creative and technical work for agencies, motion graphics, application development, hosting and support.
Some exciting research to share from Binarly REsearchers @cci_forensics and @pagabuc -- a novel approach to UEFI bootkit detection.
🔥Read the technical paper: "UEFI Bootkit Hunting: In-Depth Search for Unique Code Behavior"
👉 https://t.co/KwmiNq9hdc
NEW! On the 'Three Buddy Problem' pod, we dig into the latest exploited Apple iPhone zero-day (USB Restricted Mode bypass), an AMD microcode flaw so serious it’s not being fully disclosed, a barrage of Patch Tuesday 0days, and some interesting Russian threat actor things... @craiu@juanandres_gs
(show links in comments)
What’s hiding in your firmware? 👀 Meet us at #BlackHatEurope to find out. Binarly is showcasing Binary Risk Hunt, the free tool exposing vulnerabilities, leaked keys & more!
🎟️ Schedule here: https://t.co/sJKi5eShQG
⚙️ Scanner: https://t.co/Qn3kOZoL6u
Last year, we announced our Secure AI Framework to help others deploy secure-by-default AI models. Today, we’re introducing https://t.co/Tg1AEseucB, an interactive risk assessment tool and resource hub to put SAIF principles into action. Learn more ↓ https://t.co/SuiODaVJhe
It's been a great privilege to work with the Google SAIF team to bring this important project to life. If you are working with AI models, it's definitely worth checking out.
🏆Our REsearch team is proud to have stepped onto the @LABScon_io keynote stage for the third year!
🔐Huge shoutout to our speakers, @pagabuc and @matrosov, who presented “#PKFAIL: Supply-Chain Failures in Secure Boot Key Management.”
🔥slides: https://t.co/498iDQxtp9
🚨In just a few hours at #LABScon, we’ll be unveiling a high-impact vulnerability and a critical security discovery affecting platform trust on Supermicro servers. Stay tuned and watch our REsearch blog!
🎉 The all-new Binarly Transparency Platform v2.5 introduces Reachability Analysis to help security teams prioritize vulnerabilities by analyzing the potential reach and impact of exploitable code paths. A game-changer in software security!
https://t.co/BOQ1dR2F1V
We’re thrilled to announce the launch of our new products at #BHUSA! Today, we introduced the #BinaryRiskHunt free scanner for UEFI FW, which can detect #PKfail, #LogoFAIL, and numerous other vulnerabilities.
Get your SBOM with transitive dependencies!
🔬https://t.co/xLzvSiydFC
🚨New! "PKFail: Untrusted Platform Keys Undermine Secure Boot on UEFI Ecosystem."
#PKfail is a supply-chain issue affecting x86/ARM devices around the globe.
Blog:
https://t.co/X3RaVzDWGk
Full report:
https://t.co/BrzDzd5D4L
A free scanning tool: https://t.co/fSqeVlxxT7
NEW! "Blind Trust and Broken Fixes: The Ongoing Battle with LogoFAIL Vulnerabilities".
6 months have passed since we publicly disclosed #LogoFAIL, a vulnerability impacting image parsers that affects both x86 and ARM-based ecosystems.
Full report: https://t.co/EbC4wD2e9Z
Fresh from Binarly REsearch team: We’ve completed an in-depth analysis of the #XZbackdoor, from initialization to the main hook enabling remote access.
Dive into our validated breakdown of techniques and backdoor functionalities, complete with proofs.
https://t.co/uBy38uY6vQ
NEW! In this blog, we discuss how Binarly's REsearchers dissected the XZ backdoor and created the https://t.co/4QjZP5DeQ0 detection tool.
https://t.co/69qMcm8nkb
From day one, we set out on the tough journey to solve the gnarly problems impacting modern software supply chain security. Today I'm thrilled to share that some of the sharpest minds in cyber have validated our approach and joined our oversubscribed seed round. I'm grateful to add @TwoBearCapital, @Blu_Venture,
@CanaanPartners, @Cisco_Invests and @Liquid2V to our team.
https://t.co/5AQX8oPqNN
Focusing on equity and access, Cure4Cancer is working to improve outcomes for patients nationwide by bringing together multi-regional stakeholders to accelerate the development of cancer cures. #GlobalCancerMoonshot#WorldCancerDay@AsiaPolicy
https://t.co/ToAmB8ClCt