Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @insecur1tea
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @insecur1tea
-
insecuritea proslijedio/la je Tweet
Just posted my talk "Keeping Windows Secure" touching on security assurance process and vuln research in Windows from
@BlueHatIL 2019:https://github.com/dwizzzle/Presentations/blob/master/David%20Weston%20-%20Keeping%20Windows%20Secure%20-%20Bluehat%20IL%202019.pdf …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Holy shit. Researcher discovers that TeamViewer stores user passwords encrypted and finds the encryption key and initialization vector in the windows registry https://whynotsecurity.com/blog/teamviewer/ …
#InfosecHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
[CPR-Zero] CVE-2019-1372 (Azure App Service): Heap Based Buffer-Overflow in DWASInterop.dllhttps://cpr-zero.checkpoint.com/vulns/cprid-2139/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
[CPR-Zero] CVE-2019-1234 (Azure Stack): Azure Stack Spoofing Vulnerabilityhttps://cpr-zero.checkpoint.com/vulns/cprid-2140/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
We
@VDOOSecurity just released KotlinScriptProvider, an extension that allows running Kotlin scripts in Ghidra. https://github.com/VDOO-Connected-Trust/KotlinScriptProvider …#ghidra#kotlinHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Videos & slides from my
#FOSDEM opening keynote "#Linux#Kernel – solving big problems in small steps for more than two decades" are available: WebM/VP9: https://video.fosdem.org/2020/Janson/linux_kernel.webm … MP4: https://video.fosdem.org/2020/Janson/linux_kernel.mp4 … Slides: https://fosdem.org/2020/schedule/event/linux_kernel/attachments/slides/3890/export/events/attachments/linux_kernel/slides/3890/Fosdem_Leemhuis_Kernel_Steps.pdf … Schedule page: https://fosdem.org/2020/schedule/event/linux_kernel/ …pic.twitter.com/24JTCsMKyx
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Can your EDR detect symbolic link callback rootkits? Because ours sure as heck can't.
@aionescu and I wrote about these! https://windows-internals.com/dkom-now-with-symbolic-links/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Virtual Method Table for newbies #1 https://littlemastermind.codes/2020/02/01/virtual-method-table-for-newbies/ … Virtual Method Table for newbies #2 https://littlemastermind.codes/2020/02/01/virtual-method-table-for-newbies-2/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
New video! What's the CPU stack used for and how does it work? Check it out: https://youtu.be/xBjQVxVxOxc pic.twitter.com/1AJ1A8L2Aw
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Reversing XignCode3 Anticheat – Registering Notify and Callback Routines Part 4.1 is out!
Anti-cheats use callbacks and notification routines to control what is happening on your system, let's dig into this
https://niemand.com.ar/2020/01/31/reversing-xigncode3-driver-part-4-1-registering-notify-and-callback-routines/ …
#reversing#hacking#infosec#securitypic.twitter.com/5tmM5JOyBe
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
My student Denis wrote a formal semantics for the French tax code, complete with Coq proof of soundness and SMT queries to uncover unfair tax hikes. PL for fiscal justice! https://blog.merigoux.ovh/en/2019/12/20/taxes-formal-proofs.html …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
@irsdl’s first post is a writeup for an RCE in SharePoint https://www.mdsec.co.uk/2020/01/code-injection-in-workflows-leading-to-sharepoint-rce-cve-2020-0646/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Want to see how the
@Mandiant red team weaponizes@FireEye threat intel for R&D and TTP development? Check out some research I did with@evan_pena2003 and@FuzzySec. Also includes some new executables that can be used for DLL abuse.https://www.fireeye.com/blog/threat-research/2020/01/abusing-dll-misconfigurations.html …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Some of the bugs in VirtualBox found by
@4nhdaden There are more to come. CVE-2019-2984 - https://starlabs.sg/advisories/19-2984/ … CVE-2019-3002 - https://starlabs.sg/advisories/19-3002/ … CVE-2019-3005 - https://starlabs.sg/advisories/19-3005/ … CVE-2019-3026 - https://starlabs.sg/advisories/19-3026/ … CVE-2019-3031 - https://starlabs.sg/advisories/19-3031/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Reversing C++ executables with OOAnalyzer Ghidra Plugin https://insights.sei.cmu.edu/sei_blog/2019/07/using-ooanalyzer-to-reverse-engineer-object-oriented-code-with-ghidra.html …pic.twitter.com/rK2k4Q17Gd
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Google loves security keys, and today announced an open source implementation to help spur further innovation from the security research community 1/ https://security.googleblog.com/2020/01/say-hello-to-opensk-fully-open-source.html ….
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
HWASAN (think of it as ASAN v2) has become available to developers on Android outside of Google. If you use C or C++ on Android, please give it a try. https://developer.android.com/ndk/guides/hwasan … HWASAN is also available on Aarch64 Linux with a recent kernel.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Happy to announce a new LLVM instrumentation for AFL++ called CmpLog that feeds the fuzzer with comparisons operands extracted with SanCov. https://github.com/vanhauser-thc/AFLplusplus/blob/master/llvm_mode/README.cmplog.md … I used it to build the Redqueen mutator in AFL++!
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
Just published a follow-up to my Adobe Reader symbols story on the Project Zero blog. Turns out there's even more debug metadata to be found in some old (and new) builds, including private CoolType symbols. Enjoy! https://googleprojectzero.blogspot.com/2020/01/part-ii-returning-to-adobe-reader.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
insecuritea proslijedio/la je Tweet
For the past few months, I've been diving into Apple's Endpoint Security Framework. This post shares how I use the framework for detection engineering purposes. https://posts.specterops.io/detection-engineering-using-apples-endpoint-security-framework-affdbcb18b02 …pic.twitter.com/PEpNy4v7jV
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.