New blog release "Accessing Access Token for UIAccess" on restoring some small part of the older token stealing attack which was killed in Windows 10 RS5. Contains an example PS script to script an admin command prompt 😄 https://t.co/dXFopv4A8j
Here's the video recording for my presentation at #bluehatil last week on "Trends, Challenges, and Strategic Shifts in the Software Vulnerability Mitigation Landscape" https://t.co/SHEILQmZRX
@k8em0@S9k A leaderboard for orgs who've blown a fortune on bb lhf and neglected internal processes would be a neat spin. Yahoo/Oath and Shopify would be top 10 fo sure.
For those interested in coverage-guided fuzzing, I've just released CmpCov - an instrumentation module for clang/SanitizerCoverage, which breaks down CMP/strcmp()/etc. into bytes and writes the extra coverage data to standard .sancov files. Get it here: https://t.co/eU1aHiswNT
The always erudite @timoreilly on why the SV “blitzscaling” mantra causes more harm than good.
I feel that part of the reason so many security products are so user-hostile (& mostly suck) is because currently, VCs pick winners instead of customers.
https://t.co/9ODhFOaWVi
Posted the slides from my #bluehatil talk covering trends, challenges, and strategic shifts in the software vulnerability landscape. Questions, comments, and alternative perspectives welcome 🙂 https://t.co/6IAzb2AaR8
I'm all for people being paid for their work.
I'm all for there being better channels for vuln disclosure making it easy for people to help protect the public.
I even totally get the need for an offense market.
The defense market would do well not to normalize extortion further.
To go with a release of NtObjectManager v1.1.19 I've written a brief history of BaseNamedObjects and the "new" BNO isolation feature sneaked into Windows 10. https://t.co/VJKA0CCyqP