Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @mylifeasageek
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @mylifeasageek
-
Any guess how to find races through fuzzing? Here's our approach, Razzer (https://github.com/compsec-snu/razzer …), which found 16 new race bugs in the Linux kernel
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Byoungyoung Lee proslijedio/la je Tweet
.
@mylifeasageek &@blue9057 present "Abusing Performance Optimization Weaknesses to Bypass ASLR" at#BHUSA Briefings http://ow.ly/wL5rYHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
I guess ppl didn't get this http://trac.webkit.org/changeset/155563 … Remember FF hash table leaks?Safari (experimental feature) also had similar vulnerability
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Byoungyoung Lee proslijedio/la je Tweet
New, from me: Apple's iCloud cracked: Lack of two-factor authentication allows remote data download http://www.zdnet.com/apples-icloud-cracked-lack-of-two-factor-authentication-allows-remote-download-7000022196/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Can we find the crypto backdoor in a reasonable time? Guess we must be able to do it in the polynomial time? based on http://www.iacr.org/archive/crypto2001/21390001.pdf …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Things we did
@blue9057 - Partial Information Leakage in Hash Table implementations : http://trac.webkit.org/changeset/155563 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Yeah. Pretty awkward naming, isn't it?
@chrisbisnettHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wow... was it acronym? I thought they just want to mean it's wtf complicated
@NTarakanovHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
When my fuzzer hit uaf on Webkit's WTF, I said WTF? Always wondering what this "WTF" means.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Byoungyoung Lee proslijedio/la je Tweet
A recent Samsung update for GS4 (GT-I9505) sets SEAndroid to enforcing by default, which I didn't expect to see on consumer devices.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
We got confirmed 2 use-after-free and 1 heap-overflow in chrome after having three weeks of less-eat,less-sleep, and more-coding :)
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Seems this is the attempt in blink: https://chromium.googlesource.com/chromium/blink/+/master/Source/wtf/PartitionAlloc.h … Take a look at the security properties.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
This was a discussion over how to better mitigate use-after-free on webkit/chrome. Using slab allocator is one suggestion, but controvertial
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Chris Neklar and Chris Evans didn't realize or understand the problems listed above, and didn't tackle them. From http://old.nabble.com/RenderArena%3A-Teaching-an-old-dog-new-tricks-td34677159.html ….
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Old day fuzzing was all about finding exploitable one out of tons of crashes. Today, it's about finding reproducible ones out of a few uaf?
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Re-engineered exploits for CVE-2013-0912, one used for Pwn2Own 2013 chromehttps://github.com/lifeasageek/exploits/blob/master/CVE-2013-0912/leak.svg …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Well. The first use-after-free chrome bug from my DOM/JS fuzzer turned out to be duplicate bugs. Lesson? Still fuzzing works on chrome :)
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.