Just dropped a detailed blog post on our “BitUnlocker” research.
If you’re into logical vulnerabilities and BitLocker bypasses, this one’s for you!
techcommunity.microsoft.com/blog/microsoft…
Our Bootkitty team will announcing "A Stealthy Bootkit-Rootkit Against Modern Operating Systems" soon at USENIX WOOT25.
Stay tuned for upcoming presentation.
Credit:
@B1ack3at, @jihoonab151, HyunA Seo, @Iranu96, @wh1te4ever, Jinho Jung, Hyungjoon Koo.
usenix.org/conference/woo…
My presentation “XUnprotect: Reverse Engineering macOS XProtect Remediator” at #BHUSA wrapped up yesterday. Thank you so much to everyone who attended. For those who couldn’t make it to #BHUSA, I’ll be sharing the key points from my research in this thread. (1/22)
#SecureBoot is supposed to keep your devices safe—like making sure only your keys can start your car. 🧐 But what if someone figures out a way to hotwire it?
Join @pulsoid at #hw_ioNL2025 to learn how attackers do this in the real world with #BootPwn
👉 hardwear.io/netherlands-20…
Paper
LiSB: Lightweight Secure Boot and Attestation Scheme for IoT and Edge Devices [IEEE Transactions on Information Forensics and Security 25]
ieeexplore.ieee.org/abstract/docum…
安全な起動を保証するための新しいアプローチであるLiSB
I made this tool that checks if drivers from loldrivers.io are blocked by HVCI. It helps identify vulnerable drivers not blocked by Windows Hypervisor Code Integrity policy to find suitable BYOVD candidates.
Tool: github.com/ghostbyt3/BYOV…#BYOVD#HVCI#Cybersecurity
Will be presenting my Hydroph0bia (CVE-2025-4275) research at OFFZONE (offzone.moscow) 2025 on Aug 21st.
It will be 1 hr long main track talk about UEFI SecureBoot, the hole Insyde left in the H2O platform for a decade, and the things we all can do to prevent such holes.
Help us improve SecureBoot at Apple! Join the team which works on core Apple technologies such as AppleImage4, AMFI, TXM, XNU, and the Security Research Device!
jobs.apple.com/en-us/details/…
18 Followers 97 FollowingHacked? SOrry Arther
Oi, Dr. XY, it's Arth∪r, 80 and bloody hacked, mate. Tried fixin' me Twitter bio, but these flamin' buttons are smaller than a roo's patien
28 Followers 574 Followingتطبيق موريتاني يحتوي على جميع الخدمات التقنية واليدوية مثل التكييف والكهرباء والسباكة والنجارة وتوفير العمال وعاملات المنازل كما أن التطبيق يتميز بخدمة التوصيل
552 Followers 293 FollowingAdvancing trustworthy platform security with @Dasharo_com @3mdeb_com. Tweeting about Root of Trust, TPM, coreboot, UEFI, EDK II, Yocto, U-Boot, and Linux.
9K Followers 529 Following#InfoSec University Professor @ #TUGraz. #meltdown, #spectre, #rowhammer, cache attacks, sustainable security. Produced a side channel security sitcom.
965 Followers 53 FollowingThe UEFI Forum advances globally-adopted firmware specifications through enhanced security to the evolution of devices, firmware and operating systems.
3K Followers 1K FollowingEngineer working on UEFI, BIOS, firmware, coreboot, slimbootloader, embedded systems, security, networking...These are my opinions, not those of my employer
940 Followers 567 FollowingVulnerability Research Lead @binarly_io. Prev: Postdoc @ucsantabarbara. Binary analysis, memory forensics et al. Captures flags with Shellphish and NOPS.
602 Followers 551 FollowingApplied cybersecurity, ph.d, cissp, riss, team enu, team v, mws, ntv, samurai kids, enlightened, team valor. My opinions are my own, not views of my belonging.