Rich Felker

@RichFelker

Yeah, I do , FOSS & infosec stuff. But now is not the time for a mostly-/only-tech Twitter feed.

Beigetreten März 2014

Tweets

Du hast @RichFelker blockiert

Bist du sicher, dass du diese Tweets sehen willst? Das Ansehen von Tweets wird @RichFelker nicht entblocken.

  1. hat retweetet
    vor 6 Stunden

    today's horrifying discovery: the industry has a tool for flashing USB flash drives, and a separate but closely related tool for flashing especially shitty USB flash drives. they call it "DownGrade memory"

    Diesen Thread anzeigen
  2. hat retweetet
    vor 6 Stunden

    ", aka "Dear Intel, you suck", developer statements from Philip Guenther & Theo de Raadt:

  3. hat retweetet
    vor 17 Stunden
  4. hat retweetet
    vor 7 Stunden

    Oh wow. It's an *ARM* core. Running on-die on AMD CPUs. As trusted root. And it parses certs. Which is broken. (grizzled h/w engineers: don't @ me - this is not "well known")

    Diesen Thread anzeigen
  5. hat retweetet
    vor 7 Stunden

    There's something called the Platform Security Processor built into AMD CPUs that parses certificates and... well, you've seen this movie before.

    Diesen Thread anzeigen
  6. hat retweetet
    vor 7 Stunden

    . is the author of one of my favorite disruptive projects- it's digital graffiti but basically legal so perfect for teens: It's what I used for my "Screaming Fist" drone hacking project:

  7. vor 8 Stunden

    Challenge: exploit spectre variant 1 with something that's thought of as only data, not code (like a pdf).

  8. hat retweetet
    vor 9 Stunden
  9. vor 9 Stunden

    Intel's position on Spectre (variant 1, the bad one): every application is supposed to put __asm__ __volatile__("lfence"); all over the place:

  10. hat retweetet
    vor 10 Stunden

    This new policy on electronic devices is an outrageous, unconstitutional intrusion on the 4th Amendment rights of citizens: Please hold accountable for violating our civil liberties,

  11. vor 10 Stunden

    Given that speculative exec can fill cache, how much cache & dram bw is being wasted loading data we don't want?

  12. hat retweetet
    vor 13 Stunden

    A Mailgun employee was compromised, giving access to an adversary who grepped reddit's outbound password reset emails, who then followed up with ATO of reddit accounts, and stole BTC.

    Diesen Thread anzeigen
  13. vor 10 Stunden
  14. hat retweetet

    DON'T EVER ASK WHY WOMEN DON'T REPORT SEXUAL ASSAULT. EVER AGAIN.

  15. hat retweetet
    vor 11 Stunden

    bitcoin went up 25% today because the world realized that speculative trading is the only way to fix speculative execution bugs. ICO now means Intel Cache Offering!

  16. hat retweetet

    If you want to use the whole "we need to have a conversation about what's being said" argument, then you have to allow that conversation to happen. You cannot allow a powerful man to punch down and then tone police the resulting dissent.

    Diesen Thread anzeigen
  17. hat retweetet

    I just spent a month in Europe. When I explained that it was for safety because a month before people tried using the police to kill me, I was met with stunned disbelief, every time.

    Diesen Thread anzeigen
  18. hat retweetet
    vor 12 Stunden

    finally, a prime large enough for post-quantum classical DH:

  19. hat retweetet
    vor 12 Stunden

    It does feel like the “ignore this part please” zone is getting bigger and bigger

  20. hat retweetet
    vor 13 Stunden

    It's impossible to reason about computer security in a meaningful manner anymore. The gap between "architectural behavior" and "micro-architectural implementation" is so great, so dark, and is basically, "Here be Dragons." We cannot build solid structures on faulty foundations.

Das Laden scheint etwas zu dauern.

Twitter ist möglicherweise überlastet oder hat einen vorübergehenden Schlucklauf. Probiere es erneut oder besuche Twitter Status für weitere Informationen.

    Vielleicht gefällt dir auch

    ·