George Hughey
@ecthr0s
MSRC Engineering - previously CS @ University of Maryland working on Geneva (github.com/kkevsterrr/gen…)
ID: 1009674493973782529
http://github.com/ecthros 21-06-2018 05:48:52
62 Tweet
536 Followers
187 Following
It's long been assumed that there are no nontrivial reflected amplification attacks using TCP—prior attacks are UDP or simply TCP SYNs. In our just-now-accepted USENIX Security 2021 paper, we apply a genetic algorithm to discover 5 reflected TCP amplification attacks + variants.
At DEF CON 33, George Hughey (George Hughey) and Rohit Mothe (Rohit Mothe), Senior Security Research Managers at MSRC, took us back to the 90s with their talk on the ghost of Internet Explorer in Windows: MapUrlToZone. They uncovered how this legacy API, used by Outlook, Office,