Unlock the secrets of baseband exploitation at Pedro Ribeiro (@pedrib1337) & Seamus Burke's training 📲
Shannon and MediaTek will no longer hold any secrets for you after this heavily hands-on course!
Discover the program: https://t.co/33uWDQ5tf8
@aledwige@FranceintheUK Bonjour, avez vous une adresse email yahoo ?
Nous vous invitons a consulter le site de France Diplomatie suivant ou a contacter l'aide en ligne sur la page de connexion
https://t.co/Rmk4kugXuq
Did Apple deliberately let an open source project vulnerable?
Many security vulnerabilities recently found in #ALAC codec (an @Apple open-sourced project) appear to have already been fixed internally by Apple without sharing the fixes.
RCE in MediaTek basebands: in today's blogpost, we explore more CSN1 parsing bugs, this time in MTK's basebands running on MIPS16e2, and analyze how to exploit heap overflows in this baseband OS! https://t.co/iejkNeQNtn
Welcome to #Thales, our new sponsor for the #THcon2k22. #Thales is a leadership in high tech and invest in deep tech, big data, cybersecurity and many other things. Check their website for more information. https://t.co/F3Ft8NFbws
In other news, I've recently put together a big state of the art regarding symbolic execution techniques used in system research. Check out the slides here! 1/2 https://t.co/BsQEeTHyxd
Les auteurs de soumissions devraient avoir reçu leurs mails de notification d'acception ou de refus. Regardez dans vos spams si vous ne le trouvez pas :) Merci à tous ceux qui ont soumis !
Par ailleurs, nous allons très bientôt communiquer sur la conférence et la billetterie.
As someone said one day: a great discovery is always a mix of a bit of chance and a special brain.
“The Dirty Pipe Vulnerability” is a quite fascinating discovery.
https://t.co/MFV8KRHbsd
Decryption of #Dexguard strings in ghidra, I created 4 scripts for decrypting strings in this #android protection, these were pretty easy algorithms for having the strings encrypted.
Ugh god. Serious flaws in the way Samsung phones encrypt key material in TrustZone and it’s embarrassingly bad. They used a single key and allowed IV re-use. https://t.co/XteB3kc8cH
Rappel : si vous ne voulez pas que votre point d'accès WiFi soit utilisé pour améliorer la géolocalisation dans les produits Google, il faut qu'il porte le suffixe "_nomap" https://t.co/kmgPfFQ1qE
[TALK ANNOUNCEMENT] Forging golden hammer against Android app protections by Georges-Bastien Michel (@FrenchYeti) https://t.co/8aGG5ws5FW #INS22#INSO22#Talks
The first Crypto/energy war?
Has anyone more details on the relationship between bitcoin mining and the current situation in Kazakhstan? https://t.co/AiHYe9pbPq
Could you perform a side channel attack using a fork as an antenna? I took the challenge !
Successfully recovered 14 bytes (almost 15) of an AES 128 key from an unprotected implementation (mbedtls running on a teensy 4.0 CPU)…
Je me suis vacciné principalement pour pouvoir voyager tranquillement, mais maintenant il n'y plus de différence, tout le monde dans le même sac. Comment on fait pour avoir un PCR datant de moins de 24h ?