The Dustin Childs (@dustin_childs) 's Twitter Profile
The Dustin Childs

@dustin_childs

Parked account. I usually post stuff over where the sky is blue.

ID: 55635433

calendar_today10-07-2009 18:54:34

3,3K Tweet

2,2K Takipçi

353 Takip Edilen

Hexacon (@hexacon_fr) 's Twitter Profile Photo

Recordings of the #HEXACON2024 talks have been uploaded to our YouTube channel 🎬 youtube.com/playlist?list=… See you next year!

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

89 new CVEs from Microsoft and 45 from Adobe. 2 Microsoft bugs are under attack. I'll have my full thoughts about the release - and the real number of public bugs - out soon.

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

Biden Asked Microsoft to “Raise the Bar on Cybersecurity.” He May Have Helped Create an Illegal Monopoly. propublica.org/article/micros…

Caitlin Condon (@catc0n) 's Twitter Profile Photo

New whitepaper from Stephen Fewer on a five-bug chain he used to get unauthenticated RCE on the Lorex 2K Indoor Wi-Fi Security Camera 📸🐚 rapid7.com/globalassets/_…

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

Yes, his name is really Thanos. No, he will not snap for you. Yes, I see the irony of a guy named Thanos hacking an MCU - but it's not _that_ MCU. Just go watch the talk. It's cool stuff.

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

Microsoft released 71 new CVEs (including one 0-day ITW), but Adobe hasn't released their patches yet. Once they do, I'll have my thoughts out about the final Patch Tuesday of 2024.

Trend Zero Day Initiative (@thezdi) 's Twitter Profile Photo

The #Tesla wall charger is a new target for this year's #Pwn2Own Automotive. ZDI researcher Dmitry Janushkevich breaks down the device to expose the attack surface in his latest blog. Read the details (and check out the pictures) at zerodayinitiative.com/blog/2024/12/1…

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

Stickers are in for the upcoming #Pwn2Own Automotive! Be there at Tokyo Big Sight for Automotive World and pick up a few. We'll also have some unique lapel pins in limited quantities. I can't believe we're just a month away.

Stickers are in for the upcoming #Pwn2Own
 Automotive! Be there at Tokyo Big Sight for Automotive World and pick up a few. We'll also have some unique lapel pins in limited quantities. I can't believe we're just a month away.
Haifei Li (@haifeili) 's Twitter Profile Photo

Got in Security Response's Q4 Leaderboard & swags but what I really want is a faster process on resolving cases & complaints. #knowWhatResearchersReallyWant

The Dustin Childs (@dustin_childs) 's Twitter Profile Photo

Great googly moogly. It looks like this is the largest monthly release from #Microsoft ever - including 3 bugs under active attack. Welcome to 2025. I'll have my full thoughts out soon.

Trend Zero Day Initiative (@thezdi) 's Twitter Profile Photo

It's a small release from #Adobe but a monster 159 CVEs getting fixed by #Microsoft. 3 are under active attack. It's the largest release in Microsoft's history. The Dustin Childs breaks down the full release and shows you what to look out for at zerodayinitiative.com/blog/2025/1/14…

Trend Zero Day Initiative (@thezdi) 's Twitter Profile Photo

The schedule for #Pwn2Own Automotive is live! We have 50 entries from 21 teams across three categories. EV Chargers and IVI systems turned out to be popular choices. See the full schedule at zerodayinitiative.com/blog/2025/1/21… #P2OAuto

Trend Zero Day Initiative (@thezdi) 's Twitter Profile Photo

The ZDI researcher who found this (Peter Girnus) discovered this vulnerability was used to target both the Ukrainian government and other Ukrainian organizations in a SmokeLoader campaign that was likely deployed by Russian cybercrime groups. Details & IOCs are in the blog.