Matthias Luft

@uchi_mata

Principal Platform Security Engineer . Opinions are my own.

Vrijeme pridruživanja: veljača 2009.

Tweetovi

Blokirali ste korisnika/cu @uchi_mata

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @uchi_mata

  1. Prikvačeni tweet
    6. pro 2019.

    Slides and material from our talk on attacking container build systems from are now online: And so is Terrier, the CI-oriented container integrity verification tool (mainly due to the amazing effort of the ):

    Poništi
  2. proslijedio/la je Tweet
    prije 1 sat

    The way this project looks to me right now is the usual (sad) story of a bunch of incumbent Telco operators with a few universities siphoning off cash into white elephant projects.

    Prikaži ovu nit
    Poništi
  3. proslijedio/la je Tweet
    1. velj

    99 smartphones are transported in a handcart to generate virtual traffic jam in Google Maps. Through this activity, it is possible to turn a green street red which has an impact in the physical world by navigating cars on another route!

    Prikaži ovu nit
    Poništi
  4. proslijedio/la je Tweet
    31. sij

    The CFP for fwd:cloudsec is now open! Details at Also we've got a logo, so finally we can start handing out stickers soon.

    Poništi
  5. proslijedio/la je Tweet

    I work with the in helping poke fingers into the eyes of those who feel they can abuse children by using technology to hide. They are desperate for anyone who knows databases and can offer time in helping make theirs better and more efficient

    Prikaži ovu nit
    Poništi
  6. proslijedio/la je Tweet
    30. sij

    In the past year, I was researching Azure Stack, which is an on-premise version of Azure Cloud. In the following blog posts, we present information on what is Azure Stack and its architecture and disclose a vulnerability in Azure App Service that allowed a sandbox escape.

    Prikaži ovu nit
    Poništi
  7. 31. sij

    These details on the recent Azure breakout vulns really break my heart after having said MS is doing such a good security job for years :(

    Poništi
  8. proslijedio/la je Tweet
    29. sij
    Prikaži ovu nit
    Poništi
  9. proslijedio/la je Tweet

    - what a cool project. Especially for those of us with a few nRF52840 dongles laying around 😁

    Poništi
  10. proslijedio/la je Tweet
    27. sij
    Odgovor korisniku/ci

    There isn't support for filtering based on containers yet btw -- but it absolutely could be added!

    Poništi
  11. 27. sij

    Layer 7 filtering to IMDS, very interesting and adressing a still very relevant problem - Especially in container deployments.

    Poništi
  12. 26. sij

    Please lets discuss AV on Linux servers one more time....

    Poništi
  13. proslijedio/la je Tweet
    26. sij

    Who would have thought such an scenario would be possible, eh? "Chinese hackers have used a zero-day in the Trend Micro OfficeScan antivirus during their attacks on Mitsubishi Electric"

    Prikaži ovu nit
    Poništi
  14. 24. sij

    "Careful adoption of cloud architecture is a great way to enhance an organization's efficiency & security posture."

    Poništi
  15. proslijedio/la je Tweet
    21. sij

    VM based app-containers, hefty bug bounty, remote attestation. It's so refreshing to see Microsoft get so many things just right! Impressive.

    Poništi
  16. proslijedio/la je Tweet
    14. sij

    [2/4] Windows Telemetry ETW Monitor consists of two components: - the Windbg Framework: a set of windbg scripts for monitoring Telemetry ETW activities - the Telemetry Information Visualization (TIV) framework: visualization of information and statistics (web format).

    Prikaži ovu nit
    Poništi
  17. 12. sij

    Antiope, AWS inventory + compliance framework: - Looks very interesting and could definitely be helpful in auditing AWS environments.

    Poništi
  18. 8. sij

    Very cool project on sharing SSH sessions for debugging/pairing purposes by :

    Poništi
  19. 3. sij

    And as always you can count on to have a super thorough look at Windows security features that you thought were a good idea but never quite had that analyzed: - Windows Service Hardening explained.

    Poništi
  20. 3. sij

    Great article on how to share defender information: - don't have a good overview anymore, but a couple of years back I would have been very happy to see more details about tracing full compromises/incidents.

    Poništi
  21. 2. sij

    I saw that statement a lot. Is there any research on whether some/many people drift more to the right when they get older?

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·