Luat Nguyen

@l4wio

𝚊𝚗𝚘𝚝𝚑𝚎𝚛 𝚋𝚘𝚢 𝚊𝚝

  𝚅𝚒𝚎𝚝𝚗𝚊𝚖
Joined December 2009

Tweets

You blocked @l4wio

Are you sure you want to view these Tweets? Viewing Tweets won't unblock @l4wio

  1. Pinned Tweet
    10 Apr 2018

    Hi folks, I've updated my repo, to highlight my favorite challenges with some cool ideas. Including and as well. I'm gonna tell the details of each one soon, and probably describe what are interesting points.

    Undo
  2. Retweeted
    Jan 31
    Undo
  3. Retweeted
    Jan 31

    , , and I are starting a new security blog. In our first write-up, we will discuss the impact of "SameSite by default" and how it affects web app sec. Feel free to request future topics you would like us to cover.

    Undo
  4. Undo
  5. Retweeted
    Jan 9

    Project Zero blog: "Remote‌ ‌iPhone‌ ‌Exploitation‌ ‌Part‌ ‌1:‌ ‌Poking‌ ‌Memory‌ ‌via‌ ‌iMessage‌ ‌and‌ ‌CVE-2019-8641‌" by Samuel Groß () --

    Undo
  6. Retweeted
    23 Dec 2019

    Ever wondered what makes a CTF challenge good? I've asked myself that many times. I wrote this to help me answer that question based on discussions with others in the community

    Show this thread
    Undo
  7. Retweeted
    20 Dec 2019

    JavaScript fuzzing with libFuzzer

    Undo
  8. Retweeted
    15 Dec 2019

    HITCON CTF 2019 Final Score

    Undo
  9. Retweeted
    27 Nov 2019

    My team is moving to Edge and we are expanding! If you like finding bugs in browsers this might be the job for you. We do little fuzzing, code review, Semmle and help devs ensure their designs are secure. DM's are open

    Show this thread
    Undo
  10. 24 Nov 2019

    CodeQL snapshots of large open source projects

    Undo
  11. Retweeted
    19 Nov 2019

    I presented about Site Isolation in Google's event called 🙂 / "The world of Site Isolation and compromised renderer" Slide: Video:

    Show this thread
    Undo
  12. Retweeted
    18 Nov 2019

    Another write up of a bug found by in Google VRP! An XSS via Dom Clobbering in AMP4Email

    Undo
  13. 6 Nov 2019

    This is a story how I track DOM-based XSS🐛 issues by Semmle QL. ⚠️1

    Undo
  14. Retweeted

    Introducing AddressSanitizer for and MSVC, a fast memory error detector for C/C++ that can find runtime memory issues, like use-after-free. Find out more:

    Announcing AddressSanitizer support for the MSVC toolset. Learn more.
    Undo
  15. 27 Oct 2019

    Apparently I will be at HITCON CTF Final in Taiwan Looking forward to it!

    Undo
  16. Retweeted
    27 Oct 2019

    Today is the 3rd anniversary of "Attacking JavaScript Engines". Not a lot has changed, but I tried to briefly summarize the things that did: It's been a few month since my last interactions with JSC though, so any corrections/additions are very welcome :)

    Undo
  17. 20 Oct 2019

    2019 quals writeups from 𝚙𝚠𝚗𝙿𝙷𝙾𝚏𝚞𝚗

    Undo
  18. Retweeted
    16 Oct 2019

    The second writeup: examining and exploiting android vendor binder services-part1. Writeup for CVE-2018-9143, plus an interesting reversing quirk: where is my vtable?

    Undo
  19. 14 Oct 2019

    "the story of 𝐩𝐝𝐟𝐢𝐮𝐦 🐞𝐮𝐬𝐞-𝐚𝐟𝐭𝐞𝐫-𝐟𝐫𝐞𝐞 series" slides can be found at here: (This slides was for beVXcon in HongKong long time back, but I missed it because didn't make the VISA in time. Sorry about that) Enjoy!

    Undo
  20. 13 Oct 2019

    9 🇻🇳 𝚙𝚠𝚗𝙿𝙷𝙾𝚏𝚞𝚗 with my awesome teammates

    Undo
  21. Retweeted
    4 Oct 2019
    Undo

Loading seems to be taking a while.

Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

    You may also like

    ·