It’s almost time for Hack The Vote 2020 and registration is now live! Sign up for RPISEC's quadrennial CTF at the link below - our registration page is available in English, Spanish and AT&T
https://t.co/LSIp6CG5kg
Happy to share that @JosephBialek and I just published a new research paper that analyzes the effort of enabling SMAP for NTOS: https://t.co/wMWF9K4H4v
We'd love to discuss && hear other perspectives :)
Interesting facts about 'exec_id' - almost all Linux kernels insufficiently restrict exit signals (except 2.0.39 and 2.0.40 ;-))
https://t.co/3GBTuZdrbk
New blog post on Hardware-enforced Stack Protection in Windows 10 from the Windows kernel team (@TheRealHariP & @mamyun)
Support is in WIP fast ring builds if/when you have a CPU that supports CET :)
https://t.co/EIk36PKgME
The hardlink mitigation was backported in with month's security update. For all updated systems, hardlink creation now requires FILE_WRITE_ATTRIBUTES access to the target file. This breaks many existing file-redirection EOP attacks that require the use of hardlinks.
My team is once more hiring vulnerability researchers for our Redmond WA office. This is for low-level OS/platform security research work on Windows and Azure. More details on what we do at https://t.co/LcPuCi5lZ1. Apply directly at https://t.co/qvmXQ8vjq4 or DM me if interested!
Do you still plan on writing your exploit scripts in elisp^Wpython2?
Be ready in a few months to plug in, dial that modem, heap spray some cats, pop some BGP boxes and ~ b l a z e ~ like there's no tomorrow.
Rolling big blunts @ 4/20/2020, hacking like it's 4/20/1999.
Here is an exploit chain I wrote for Firefox that gets RCE via CVE-2019-9810 and escape the sandbox with CVE-2019-11708/CVE-2019-9810. Once compromised, it drops a payload and injects privileged JS code in already/newly created tabs. https://t.co/ZmUxjBBhpC
I'll be talking about some Oculus Quest research today at MTVRE -- https://t.co/RnsXbkZjwp. We've started releasing tools at https://t.co/KVrzlEko78. I'll drop some of the rooting tools after today's event. Plenty of reversing and building left to be done
I wrote a blog post "Breaking Through Another Side: Bypassing Firmware Security Boundaries". It's a first part of the series based on our #BHUSA research with Alexandre Gazet.
HW/FW Security != Summary of all Security Boundaries
https://t.co/5x0d5DJnfK