Today I am pleased to announce the release of a code analyser I’ve been working in my free time - wSAST (wsast.co.uk)
wSAST aims to make code analysis easier for application security consultants by providing tools to graph relationships, find paths between functions,…
Along with the techniques, we are also publishing a windbg js extension that exports various internal structures of segment heap useful for exploit development:
github.com/vp777/exploit-…
Along with the techniques, we are also publishing a windbg js extension that exports various internal structures of segment heap useful for exploit development:
github.com/vp777/exploit-…
Today we've published Intel Microcode decryptor! It gives you an amazing opportunity for researching x86 platforms. You can understand how Intel mitigated spectre vulnerability, explore the implementation of Intel TXT, SGX,VT-x technologies! Enjoy it! github.com/chip-red-pill/…
here's a proof of concept (with really shoddy reliability) for that watch_queue OOB write (git.kernel.org/linus/c993ee0f…): bugs.chromium.org/p/project-zero…
uses the OOB write to clobber the "/" at the start of the ELF interpreter path of an in-progress setuid exec to make it a relative path
Today I am releasing the final post of a 3 part series on “modern” browser exploitation targeting Windows. In this post we port our exploit primitives to Edge itself & combine 12 ROP chains in order to defeat ACG, CIG, DEP, ASLR, CFG, "no child processes"
connormcgarr.github.io/type-confusion…
It's Launch Day for #CloudBreach! Register for #BreachingAzure Lab and get 25% discount code using the promo code "LAUNCHDAY25". #BreachingAzure challenges students to utilise the latest offensive techniques in a realistic hybrid environment. Are you ready to breach the cloud?
Today we're publishing a detailed technical writeup of FORCEDENTRY, the zero-click iMessage exploit linked by Citizen Lab to the exploitation of journalists,
activists and dissidents around the world. googleprojectzero.blogspot.com/2021/12/a-deep…
"Can you still relay authentication in a Windows domain if NTLM is disabled?", I asked myself. "Perhaps I should research that" I said. Here's a blog post about what I found out. googleprojectzero.blogspot.com/2021/10/using-…
Memory tagging is coming to kill all of your favorite Linux kernel exploits.
I'll be premiering my "Mitigating Linux kernel memory corruptions with Arm Memory Tagging" LSS talk on YouTube in 24 hours. Please join in! I'll be in chat to answer questions.
youtube.com/watch?v=UwMt0e…
We have published the details of our Zoom exploit in this quite long writeup: sector7.computest.nl/post/2021-08-z… tl;dr: heap buffer overflow when handling key exchange messages for chat encryption.
105 Followers 5K FollowingBitcoin is the reserve asset of internet economy & most pristine form of collateral in • Founder @PeoplesReserve #WeThePeople • @btcFairValue • Jesus Saves †
5 Followers 247 FollowingProfessor Chris's team provides cryptocurrency analysis, earning $500 to $5,000 a day, click to join WS: https://t.co/AWaeFXIjeL
26K Followers 2 FollowingOffensiveCon Berlin is a technical international security conference focused on offensive security only. Organised by @Binary_Gecko. Stay tuned #OffensiveCon26.
83K Followers 16 FollowingTrend Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
8K Followers 151 FollowingFor contact in the security community. NOTE: All the tweets are totally my personal opinions, not about any of my current employer stuff.
61K Followers 804 FollowingSecurity Researcher. Previously Google Project Zero and TAG | 0days all day. Love all things bytes, assembly, and glitter. she/her.
133K Followers 25 FollowingRedefining how money moves. Stablecoin infrastructure for a new global financial system.
Backed by @foundersfund, @hiFramework, & @bitfinex.
78K Followers 3K Following☦️ Wife, Mother, Patriarchist. NOT “trad” or “conservative.” Author of Occult Feminism: The Secret History of Women's Liberation OUT NOW ⬇️
18K Followers 127 FollowingOrthodox Deacon, Professor of Philosophy (History of Philosophy, Epistemology, Philosophy of Science), Apologist, Traditionalist, Skier, Angler, Montana Man
681 Followers 80 FollowingOrthodox priest, father of large family.
Life may have Crosses, but joy comes through them. As Christians, we must have joy and optimism!
God is good!
2K Followers 974 FollowingTo catch an adversary you must become one. Always deliver more than expected !!!!!! All post are educational purposes only. prompt Library ⬇️ URL
558K Followers 1K FollowingBitcoin & Books. Cofounder of TIP. GP @egodeathcapital. Advisor at @primal_app and @debificom. I buy Bitcoin at @River. Nostr: https://t.co/DZDhdYp55P
32K Followers 2K FollowingOrthodox☦️ • Chief of sinners • Russian propagandist • “Know that we must serve, not the times, but God” -St. Athanasius • Find an Orthodox Church⬇️
785K Followers 921 FollowingFounder of Lyn Alden Investment Strategy. Blended finance and engineering background. Author of Broken Money. GP @egodeathcapital. BoD at https://t.co/FHNz9MBftH.
53K Followers 198 FollowingThe Bitcoin Wizard | Author of The Bitcoin Age and The Great Harvest | Not Financial Advice | MSTR + MTPLF HODLER | [email protected]
22K Followers 293 FollowingEx-TradFi (14 yrs in Investor Relations, Wealth Management, Financial Education). Building in stealth for Bitcoin Treasury Companies. Jesus is King ✝️
84K Followers 430 FollowingPresident of @metaplanet_jp listed on the Tokyo Stock Exchange (3350:JP / $MTPLF) | Applied Math @harvard | 株式会社メタプラネット代表取締役 | @ypo member
27K Followers 789 Following☦️ Presenting the Orthodox Way, Truth, and Life through Orthodox Christian catechesis, following the Holy Fathers. Join our newsletter 👇
59K Followers 133 FollowingWe make tinygrad and sell tinybox, the best perf/$ AI computer.
$25k for 4x 5090 in a quiet box.
Our mission is to commoditize the petaflop.
3K Followers 1K FollowingWrite some shit code. CTF with @r3kapig. Do shit security research. Currently at University of California, San Diego. DEFCON 31/32/33 finalist | LOOKING FOR JOB
25K Followers 2K FollowingBitcoin is the reserve asset of internet economy & most pristine form of collateral in 🌎 • Founder @PeoplesReserve #WeThePeople • @btcFairValue • Jesus Saves✝️
15K Followers 1 Followingsustainable freedom tech funding powered by sats - 100% pass through with no management fees - 501(c)(3) - bitcoin for a better world!
102K Followers 7 FollowingThe world's first and largest Bitcoin Treasury Company and leading provider of AI + BI software | $MSTR $STRC $STRK $STRF $STRD https://t.co/P9jlb1QmXo