Claudiu Teodorescu
@cteo13
Co-founder @Binarly_io
Previously worked at Cylance, FireEye, EnCase, eEye Digital Security
ID: 3256013564
https://binarly.io 25-06-2015 22:33:12
242 Tweet
362 Followers
66 Following
⛓️Recently, MSI Gaming USA announced a significant data breach. The data has now been made public, revealing a vast number of private keys that could affect numerous devices. 🔥FW Image Signing Keys: 57 products 🔥Intel BootGuard BPM/KM Keys: 166 products 🔬github.com/binarly-io/Sup…
⛓️Thank you Intel Security for fixing the incomplete RSB stuffing SMM mitigation (#FirmwareBleed/CVE-2022-38087). 💥BRLY: binarly.io/advisories/BRL… 💥Intel: intel.com/content/www/us… 💥IBM: ibm.com/support/pages/… 💥Dell: dell.com/support/kbdoc/… 🔬Details: binarly.io/posts/Firmware…
A Dark Side of UEFI: Cross-Silicon Exploitation by Alex Matrosov and Alexander Ermolov now #OffensiveCon23
⛓️The widespread use of UEFI on ARM devices notably expands the attack surfaces within TrustZone and beyond, raising security concerns 💥REsearch: "A Dark Side of UEFI: Cross-Silicon Exploitation" presented the new ARM attacks at offensivecon 🔬Slides: github.com/binarly-io/Res…
🔥At offensivecon, we showcased three different attack scenarios on ARM UEFI and beyond: 1️⃣CWE-125: OOB (memory leak) with GetVariable/SetVariable pattern. 2️⃣BRLY-2022-033: GetVariable Stack overflow (UsbConfigDxe). 3️⃣LPE to SMM from DXE by design. youtube.com/watch?v=7COjay…