Daniel Shapiro (@wimpypolo) 's Twitter Profile
Daniel Shapiro

@wimpypolo

ID: 566558632

linkhttp://www.bindecy.com calendar_today29-04-2012 18:34:14

1,1K Tweet

476 Followers

2,2K Following

Tetrane (@tetrane) 's Twitter Profile Photo

Today is a big day for us! We are launching REVEN Free Edition. Read the announcement and get it. url.tetrane.com/ZAc8Q/ac0e

Today is a big day for us!
We are launching REVEN Free Edition.
Read the announcement and get it.
url.tetrane.com/ZAc8Q/ac0e
Bill Demirkapi (@billdemirkapi) 's Twitter Profile Photo

New research! Unpacking CVE-2021-40444: A Deep Technical Analysis of an Office RCE Exploit billdemirkapi.me/unpacking-cve-…

Grant H (@digital_cold) 's Twitter Profile Photo

Our paper on emulating basebands for security analysis has been accepted at NDSS! We found multiple critical pre-auth vulnerabilities in the 2G and 4G implementations on Samsung and MediaTek basebands. Check out the paper or keep reading to learn more🧵hernan.de/research/paper…

Our paper on emulating basebands for security analysis has been accepted at NDSS! We found multiple critical pre-auth vulnerabilities in the 2G and 4G implementations on Samsung and MediaTek basebands.

Check out the paper or keep reading to learn more🧵hernan.de/research/paper…
Alex Xu (@alexxubyte) 's Twitter Profile Photo

Popular interview question: how to diagnose a mysterious process that’s taking too much CPU, memory, IO, etc? The diagram below illustrates helpful tools in a Linux system. šŸ”¹ā€˜vmstat’ - reports information about processes, memory, paging, block IO, traps, and CPU activity.

Popular interview question: how to diagnose a mysterious process that’s taking too much CPU, memory, IO, etc?
 
The diagram below illustrates helpful tools in a Linux system. 
 
šŸ”¹ā€˜vmstat’ - reports information about processes, memory, paging, block IO, traps, and CPU activity.
Pedram Amini (@pedramamini) 's Twitter Profile Photo

Kudos to the Airbus CERT team for maintaining a number of open-source infosec tools on Github. They most recently released ttddbg, an IDA Pro plugin to ingest the time travel debugging trace data from WinDbg: github.com/airbus-cert/tt…

Kudos to the Airbus CERT team for maintaining a number of open-source infosec tools on Github. They most recently released ttddbg, an IDA Pro plugin to ingest the time travel debugging trace data from WinDbg:

github.com/airbus-cert/tt…
Filip Dragovic (@filip_dragovic) 's Twitter Profile Photo

Spooler service disabled, RPC filters installed to prevent PetitPotam and File Server VSS Agent Service not installed but you still want to relay DC authentication to ADCS? Don't worry MS-DFSNM have your back ;) github.com/Wh04m1001/DFSC…

Spooler service disabled, RPC filters installed to prevent PetitPotam and File Server VSS Agent Service not installed but you still want to relay DC authentication to ADCS?
Don't worry MS-DFSNM have your back ;)

github.com/Wh04m1001/DFSC…
Jonas L (@jonaslyk) 's Twitter Profile Photo

Presenting D-Generate , syscall tracing as its supposed to be! raw.githubusercontent.com/jonaslyk/temp/… usage: dg cmd.exe - displays all syscalls done by process with cmd.exe as imagefile. dg 4736 - by pid 4736 dg - just everything example of recording: raw.githubusercontent.com/jonaslyk/nt/ma…

Presenting D-Generate , syscall tracing as its supposed to be!

raw.githubusercontent.com/jonaslyk/temp/…

usage:

dg cmd.exe - displays all syscalls done by process with cmd.exe as imagefile.
dg 4736 - by pid 4736
dg - just everything

example of recording:
raw.githubusercontent.com/jonaslyk/nt/ma…
Amal Dorai (@amaldorai) 's Twitter Profile Photo

I'm not surprised that Adobe is acquiring Figma for $20B, nor that Wall Street doesn't understand it and $ADBE stock is down more than $20B today. It's a smart move for Adobe because it's nearly impossible to make legacy software applications multi-user collaborative. Thread: 🧵

KevinLu (@k3vinlusec) 's Twitter Profile Photo

Here is my new blog "Technical Analysis of Windows CLFS Zero-Day Vulnerability CVE-2022-37969 - Part 1: Root Cause Analysis", Part 2 will be released soon. Stay tuned!

Ido Frizler (@idofrizler) 's Twitter Profile Photo

1/ ×›×§×•×Ø××™× ×•×›×ž×©×Ŗ×ž×©×™×, אנחנו ×‘×“×Ø×š-כלל ×ž×Ŗ×¢× ×™×™× ×™× מאוד ×›×©×ž×Ŗ×¤×Ø×”×ž×Ŗ פרצה חדשה (מה שנקרא Zero-day) ×‘×ž×•×¦×Ø או חבילה נפוצים, ובמאמצים ×œ×”×’×•×Ø אותה ×ž×”×Ø לפני ×©×Ŗ×•×§×¤×™× יוכלו לנצל אותה נגדנו. אבל ×”××ž×Ŗ היא ×©×ž×Ø×‘×™×Ŗ ×”×—×•×œ×©×•×Ŗ בעולם לא נהגרות בפועל מיד כשהן ×ž×Ŗ×’×œ×•×Ŗ, ואפילו לא קרוב לכך...

1/ ×›×§×•×Ø××™× ×•×›×ž×©×Ŗ×ž×©×™×, אנחנו ×‘×“×Ø×š-כלל ×ž×Ŗ×¢× ×™×™× ×™× מאוד ×›×©×ž×Ŗ×¤×Ø×”×ž×Ŗ פרצה חדשה (מה שנקרא Zero-day) ×‘×ž×•×¦×Ø או חבילה נפוצים, ובמאמצים ×œ×”×’×•×Ø אותה ×ž×”×Ø לפני ×©×Ŗ×•×§×¤×™× יוכלו לנצל אותה נגדנו. אבל ×”××ž×Ŗ היא ×©×ž×Ø×‘×™×Ŗ ×”×—×•×œ×©×•×Ŗ בעולם לא נהגרות בפועל מיד כשהן ×ž×Ŗ×’×œ×•×Ŗ, ואפילו לא קרוב לכך...
chompie (@chompie1337) 's Twitter Profile Photo

Excellent LPE write-up by @[email protected] , where he details how suspected compiler changes lead to the introduction of double fetch vulnerabilities. Also discusses a KASLR side channel bypass. PoCs included. Definitely check it out exploits.forsale/24h2-nt-exploi…

nedwill (@nedwilliamson) 's Twitter Profile Photo

Last month Arizona State University I presented my work on formalizing automated bug discovery, developing a framework to characterize the full spectrum of approaches - from fuzzing to human analysis. I'm sharing my evolving perspective on the fundamental nature of the bug finding problem. Full

Jonathan Jacobi (@j0nathanj) 's Twitter Profile Photo

šŸš€ We're excited to share our brand-new paper! Introducing ā€œSuperscopesā€ā€”an effective new method to uncover hidden meanings from an LLM's thinking process! Superscopes amplifies subtle internal features in LLMs, revealing weak yet meaningful features that previous methods

šŸš€ We're excited to share our brand-new paper!

Introducing ā€œSuperscopesā€ā€”an effective new method to uncover hidden meanings from an LLM's thinking process!

Superscopes amplifies subtle internal features in LLMs, revealing weak yet meaningful features that previous methods
Epsilon (@epsilon_sec) 's Twitter Profile Photo

About to celebrate Easter with your family but don't know what to talk about at the table? Then don't lose time and read our new article about RPAC! blog.epsilon-sec.com/cve-2025-31201…

About to celebrate Easter with your family but don't know what to talk about at the table?
Then don't lose time and read our new article about RPAC!
blog.epsilon-sec.com/cve-2025-31201…
gilbo (@_gilboz) 's Twitter Profile Photo

ida_kernelcachd_ng released github.com/gilboz/ida_ker… Getting -24,000 vmethod symbols on latest kernelcache! As mentioned it is still a WIP, if you encounter issues then submit them and ill fix on my free time! Contributions are welcome!!