🔺This is the first talk I've given in 6 years – featuring formal verification of post-quantum cryptography, the evolution of the Secure Page Table Monitor, a view into Memory Integrity Enforcement, updates to Apple Security Bounty… and a personal note.
@EmmanuelOchubi1@Ox4d5a@imfaiqu3@GodfatherOrwa@thehackerish@theXSSrat@Blaklis_@arth_bajpai This screenshot contains enough information for people to locate the vulnerable website (intext:"..."), if I were you, I would make sure that it's not identifiable from the image (X-AspNet-Version: 4.0.30319 and X-Powered-By: https://t.co/iazWJwEDAI in case you have any doubt)
A random idea I had that turned into a short new blog post.
(This post does not demonstrate a vulnerability, but rather a logic flaw in the execution environments of the most popular competitive programming platforms).
https://t.co/yHTWVHlSEK
This might be the best bug I found. Never thought I'd be writing a kernel exploit as reliable, clean and fast as a browser exploit. For a while I actually used this to root my research phone when can't be bothered to patch the rom: https://t.co/RVp5tIKDU4
Heap buffer overflow within the Netfilter subsystem of the Linux kernel (CVE-2022-34918).
ps: @metasploit module coming soon.
https://t.co/pDUnelBuCy
#netfilter#0day
Hajime! We are glad to announce our second ring0 sponsor!
🙏 Thank you @RandoriSec for helping us to gather the infosec community in Paris
⛩️ To find out more about RandoriSec, visit their website at https://t.co/BG5BUezL85
#HEXACON2022
Here are 11 reasons why we should use #HyperDbg, the differences between HyperDbg and #WinDbg, and how HyperDbg will change our debugging/reversing journey.
A thread (24 tweets) 🧵:
@moyix@Rode0day Been using these as cool random hostnames.
https://t.co/GbPNkFSmba
Chrome seems to hate that, thinks it's a new computer when the hostname gets changed (on each boot).
Just published a new article about Keccak/Sha3 (explains its steps in simple words, and explains how leaking the internal state can lead to unwanted consequences)
https://t.co/oZyvZuVJT4
Feedback is welcome (PS: I'm not a cryptographer)