Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @sebastian9er
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @sebastian9er
-
Sebastian Neuner proslijedio/la je Tweet
Ouch. The Safari tracking prevention has privacy vulnerabilities allowing worse tracking than what it was trying to prevent. Privacy engineering is *hard*. Honestly, I don't see a robust way around this one, though I haven't had enough time to sit down and really chew on it.https://twitter.com/lukOlejnik/status/1219873289230856198 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
At Google Project Zero, the team spends a *lot* of time discussing and evaluating vulnerability disclosure policies and their consequences. It's a complex and controversial topic! Here's P0's policy changes for 2020 (with our rationale for the changes): https://googleprojectzero.blogspot.com/2020/01/policy-and-disclosure-2020-edition.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
Exploiting Wi-Fi stack on Tesla Model S. Details of vulnerabilities and exploition:https://keenlab.tencent.com/en/2020/01/02/exploiting-wifi-stack-on-tesla-model-s/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
A new set of "Mac firmware security" pages are finally out, thanks to
@XenoKovah. Check it out, it's what me and my teammates at Apple had beet working on really damn hard for the last several years.https://support.apple.com/guide/security/uefi-firmware-overview-seced055bcf6/web …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
USB bulk transfers in 100% pure bare metal Go are operational, emulated Gadget Zero working and tested for bulk/interrupt endpoints. Now off to implement USB over Ethernet driver for this thing. Drivers in Go with TamaGo rock!https://github.com/inversepath/tamago/tree/master/imx6/usb …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
XSS is cool and all, but this is next level. You should all watch this to face the bugs that will plague us for the next few years at least.https://twitter.com/shhnjk/status/1196879724695285760 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
Paged Out! #2 (Nov 2019) is out! And it's free to download :) https://pagedout.institute/?page=issues.php … This issue has 55 articles in 11 categories: Programming OS Internals Assembly Operating Systems GameDev Electronics Security/Hacking SysAdmin Reverse Engineering Algorithms Writing Articlespic.twitter.com/VBhKQxzQCj
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
my exploit for gomium browser
#GoogleCTF 2019 Finalshttps://gist.github.com/hama7230/fa53db62313c0b326fea49a0d0180ac4 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Excellent talk by
@AndreaBarisani at@PacSecjp . I really liked the discussion on responsible disclosure (yes, I am aware of the fact that the talk was on boot security
) #PacSecHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
BlueKeep (CVE 2019-0708) exploitation spotted in the wildhttps://www.kryptoslogic.com/blog/2019/11/bluekeep-cve-2019-0708-exploitation-spotted-in-the-wild/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
I'd assume PE parsing in the Windows kernel would be well tested but surprisingly no, five such bugs were fixed last Patch Tuesday, all found by fuzzing. They crashed the OS as soon as they'd be written to disk or worst case viewed in Explorer. Details: https://bugs.chromium.org/p/project-zero/issues/list?q=fixed%3A2019-oct-8&can=1 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
We recently found that some email addresses and phone numbers provided for account security may have been used unintentionally for advertising purposes. This is no longer happening and we wanted to give you more clarity around the situation:https://help.twitter.com/information-and-ads …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
If you're planning to attend Dragon CTF 2019, you might want to take a look at this post: https://blog.dragonsector.pl/2019/10/dragon-ctf-2019-will-feature-arcane.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
Enable the microphone remotely without interaction in Signal
https://twitter.com/ProjectZeroBugs/status/1180210643258859520 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
EPIC JAILBREAK: Introducing checkm8 (read "checkmate"), a permanent unpatchable bootrom exploit for hundreds of millions of iOS devices. Most generations of iPhones and iPads are vulnerable: from iPhone 4S (A5 chip) to iPhone 8 and iPhone X (A11 chip).https://github.com/axi0mX/ipwndfu
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
That was silly https://github.com/google/syzkaller/commit/b4680d8341733f48295ccf188f109cf69027a3f9 … But I also just found 50 bugs in
#golang codebase by grepping for "type [[:alnum:]]+ error". Everybody does exactly that! Does "type Foo error" ever make sense? Casting from error doesn't Should be pointed by static analysis?@dominikhonnefHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
LastPass could leak the last used credentials due to a cache not being updated. This was because you can bypass the tab credential cache being populated by including the login form in an unexpected way!https://twitter.com/ProjectZeroBugs/status/1173400848430321664 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
Open infinite incognito windows in Chrome OS from a webpage, PoC in a tweet!: <form action="https://accounts.google.com/SignOutOptions?continue=https%3A%2F%2Fmail.google.com%2Fmails …" method="POST"><input type="submit" name="incognito" value="1" id="a" /></form><script>setInterval(function(){document.getElementById("a").click();},100);</script>
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
The dumbest of the takes going around on the iOS 0days discovered by Google: “How would Google like it if Apple did the same thing to Android?” No idea how Google would like it, but as someone who relies on these products, I think it would be awesome.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sebastian Neuner proslijedio/la je Tweet
Huge thanks to PoC developers
@zerosum0x0 and@ryhanson, and to@TomSellers,@TheColonial,@zeroSteiner,@rickoates,@wvuuuuuuuuuuuuu,@_sinn3r, and@tychos_moose, all of whose work was key in both exploit development + enhancements that will serve MSF users well beyond BlueKeep.Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
/ "The world of Site Isolation and compromised renderer"
Slide: