dragosr

@dragosr

Stop, Think, Pwn!

Vortex of Cool
Joined December 2008

Tweets

You blocked @dragosr

Are you sure you want to view these Tweets? Viewing Tweets won't unblock @dragosr

  1. 5 hours ago

    CanSecWest Dojo Registrations are available now for some courses. Still a few courses to be added.

  2. 7 hours ago

    In other news, a whole bunch of GPS trackers, primarily used for commercial fleets and such have some issues. if you use one of these, especially if they are wired into OBD car immobilizers, some caution is due.

  3. Retweeted
    29 Dec 2017

    Want to masquerade as a PCIe device? Want to learn DMA attack? Check out the cheapest FPGA based PCIe over USB 3 card with DDR3 RAM. Made in colab. with . Soon supported by for PCILeech as shown @

  4. Retweeted
    27 Dec 2017

    Our presentation "Inside Intel Management Engine" about activation JTAG for IntelME

  5. 24 Dec 2017

    windows one liners to download and execute arbitrary code

  6. 23 Dec 2017

    getting SYSTEM shells using DMA attacks

  7. 23 Dec 2017

    <yoda> underestimate the power of this code signing certificate cloning attack by and CA chain installation, you should not </yoda>

  8. Retweeted
    21 Dec 2017

    arbitrary read+write via incorrect range tracking in eBPF

  9. Retweeted
    20 Dec 2017

    Hey folks, REALLY doesn't want you to read this article from - so much so they're filing defamation charges to prevent similar articles in the future. Respect their wishes, please don't click or RT.

    Show this thread
  10. Retweeted
    17 Dec 2017
  11. 18 Dec 2017

    remote ldpreload rce cgi vuln in popular embedded small web server GoAhead (Motorola, D-link, HP...)

  12. 15 Dec 2017

    Telegram arbitrary file overwrite on receive, directory traversal.

  13. Retweeted
    15 Dec 2017

    Everyone wants there to be simple answers in security, but sometimes there are no simple answers.

  14. Retweeted
    14 Dec 2017

    People inside the IC and DoD begged for this, but it would have required direct presidential approval and was too risky/contentious. Someone seems to have just gone and done it on their own?!?! Wow. Still hasn’t sunk in. I’m going to leave this here:

  15. 13 Dec 2017

    Really?!? What kind of dns spamlist blocks gmail these days? There is only one way this ends sorbs, and google mail gets through.

  16. Retweeted
    12 Dec 2017

    After seven years of development, we are open-sourcing our machine-code decompiler under the MIT license . More details: . If you have any trouble, please, contact us via or create a ticket on GitHub.

  17. Retweeted
    13 Dec 2017

    - 7 years ago, predicted the LD_HWCAP_MASK exploitation vector used by Qualys to exploit a buffer overflow in glibc's ld.so () ¯\_(ツ)_/¯

  18. Retweeted
    11 Dec 2017

    Howdy y'all! In this friendly little tweety-box thread, I'd like to share my new project with you. It's called the GoodWatch, and it will be next month at Shmoocon. 1/n

    Show this thread
  19. 12 Dec 2017
  20. Retweeted
    12 Dec 2017

    Several weeks of research and several cease and desist letters later - the longest research paper I've ever written is now out. Read about the never-ending tale of OSX/Pirrit -

    Show this thread

Loading seems to be taking a while.

Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

    You may also like

    ·