zenhumany

@zenhumany

browser security researcher;virtualization security researcher

Vrijeme pridruživanja: veljača 2013.

Tweetovi

Blokirali ste korisnika/cu @zenhumany

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @zenhumany

  1. proslijedio/la je Tweet
    19. sij
    Poništi
  2. proslijedio/la je Tweet
    16. sij

    Experimental Android MTE (ARM Memory Tagging) support has landed in Scudo --

    Poništi
  3. proslijedio/la je Tweet
    18. sij

    I don't know who made but its pretty thorough!

    Poništi
  4. proslijedio/la je Tweet

    We have increased our Microsoft Edge bounty awards alongside today's general availability of the new Microsoft Edge. Find out more here:

    Poništi
  5. proslijedio/la je Tweet
    13. kol 2018.

    For my fellow kernel devs, here's what I've made available today - KASAN support (Address Sanitizer) for CentOS 7.5.

    Poništi
  6. proslijedio/la je Tweet
    9. sij

    My team is once more hiring vulnerability researchers for our Redmond WA office. This is for low-level OS/platform security research work on Windows and Azure. More details on what we do at . Apply directly at or DM me if interested!

    Poništi
  7. proslijedio/la je Tweet
    9. sij

    Fuzzing JavaScript WebAssembly APIs using Dharma/Domato (on Chrome/V8)

    Poništi
  8. proslijedio/la je Tweet

    We're excited to announce Vancouver 2020 with new categories and returning partners, & along with sponsor . More than $1,000,000 USD available - plus a Model 3! Details at

    Poništi
  9. proslijedio/la je Tweet
    9. sij

    I'm very excited to share my blogpost series (including PoC code) about a remote, interactionless iPhone exploit over iMessage:

    Prikaži ovu nit
    Poništi
  10. proslijedio/la je Tweet
    9. sij

    Another "nice" kernel bug that literally allows to write any memory on the machine by any user (you just give kernel any exact physical or virtual address): Again, killed before making it into any release:

    Poništi
  11. proslijedio/la je Tweet
    7. sij
    Poništi
  12. proslijedio/la je Tweet
    31. pro 2019.

    KRSI - Google's Kernel Runtime Security Instrumentation -

    Poništi
  13. proslijedio/la je Tweet
    27. pro 2019.
    Poništi
  14. proslijedio/la je Tweet
    26. pro 2019.

    New blogpost: Sanitized Emulation with QEMU-AddressSanitizer I just open-sourced my QEMU patches to fuzz binaries with ASan, QASan. You can also use it with ARM targets on Linux, a thing that you can't do with LLVM ASan!

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet

    In the final blog of our Top 5 bugs of 2019, details a privilege escalation via the core shell COM registrar object in .

    Poništi
  16. proslijedio/la je Tweet
    23. pro 2019.

    Also from the this semester, Sai Vegasena () and Roy Xu () created Vasilisk: a grammar-based fuzzer for JavaScript that uses the amount of optimization performed as a feedback mechanism. Post:

    Prikaži ovu nit
    Poništi
  17. proslijedio/la je Tweet
    23. pro 2019.

    And the source for Vasilisk:

    Prikaži ovu nit
    Poništi
  18. proslijedio/la je Tweet
    19. pro 2019.

    Academic Twitter is for bragging, right? Well, our paper, "SpecFuzz: Bringing Spectre-type vulnerabilities to the surface" has been accepted to 2020! In the paper, we show how you can detect with one simple trick

    Poništi
  19. proslijedio/la je Tweet
    18. pro 2019.

    Looks like kernel memory overwrite at controllable offset with controllable data, reachable by any user (/dev/watch_queue is 0666), reliable and non-racy: Again, you don't need to scream and panic, we are killing it (hopefully) before the release.

    Poništi
  20. proslijedio/la je Tweet

    Web developers: We've added a new experimental flag to use WebGPU in Microsoft Edge (and other Chromium browsers). This is currently only available in Canary. Enable the "Unsafe WebGPU" in edge://flags to try it out, and let us know what you think!

    Prikaži ovu nit
    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·