Matt Jones (@volvent) 's Twitter Profile
Matt Jones

@volvent

%n

ID: 193641212

calendar_today22-09-2010 10:17:46

1,1K Tweet

785 Followers

757 Following

WebAssembly Security (@wasmsecurity) 's Twitter Profile Photo

"Understanding WebAssembly An in-depth peek into the VM running in modern web browsers." - crazy hugsy - sophos.com/en-us/medialib… … - #WebAssembly #Security #Wasm #wasm

Clint Gibler (@clintgibler) 's Twitter Profile Photo

Remote Code Execution in apt/apt-get, "the HTTP fetcher process URL-decodes the HTTP Location header and blindly appends it to the 103 Redirect response" justi.cz/security/2019/…?

BSidesCanberra (@bsidescbr) 's Twitter Profile Photo

We are excited to announce our Day 2 keynote. This one will definitely make you get up early despite the fun of the Friday night party... "What's in a Jailbreak? Hacking the iPhone: 2014 -> 2019" by mdowd bsidescbr.com.au/speakers.html

We are excited to announce our Day 2 keynote. This one will definitely make you get up early despite the fun of the Friday night party...

"What's in a Jailbreak? Hacking the iPhone: 2014 -&gt; 2019" by <a href="/mdowd/">mdowd</a> 

bsidescbr.com.au/speakers.html
Alex Ionescu (@aionescu) 's Twitter Profile Photo

Interested in Hyper-V Internals? Read Part 2 of my continuing series on "Writing a Hyper-V "Bridge" for Fuzzing" as we get into the guts of hypercalls: alex-ionescu.com/?p=471 with sample code and more!

Interested in Hyper-V Internals? Read Part 2 of my continuing series on "Writing a Hyper-V "Bridge" for Fuzzing" as we get into the guts of hypercalls: alex-ionescu.com/?p=471 with sample code and more!
Ben Hawkes (@benhawkes) 's Twitter Profile Photo

Project Zero blog: "Examining Pointer Authentication on the iPhone XS" by Brandon Azad (Brandon Azad) - googleprojectzero.blogspot.com/2019/02/examin…

James Forshaw (@tiraniddo) 's Twitter Profile Photo

To go with a release of NtObjectManager v1.1.19 I've written a brief history of BaseNamedObjects and the "new" BNO isolation feature sneaked into Windows 10. tyranidslair.blogspot.com/2019/02/a-brie…

Katie🌻Moussouris (she/her/she-ra/she-hulk) 🪷 (@k8em0) 's Twitter Profile Photo

I'm all for people being paid for their work. I'm all for there being better channels for vuln disclosure making it easy for people to help protect the public. I even totally get the need for an offense market. The defense market would do well not to normalize extortion further.

Matt Miller (@epakskape) 's Twitter Profile Photo

Posted the slides from my #bluehatil talk covering trends, challenges, and strategic shifts in the software vulnerability landscape. Questions, comments, and alternative perspectives welcome 🙂 github.com/Microsoft/MSRC…

haroon meer (@haroonmeer) 's Twitter Profile Photo

The always erudite Tim O'Reilly on why the SV “blitzscaling” mantra causes more harm than good. I feel that part of the reason so many security products are so user-hostile (& mostly suck) is because currently, VCs pick winners instead of customers. qz.com/1540608/the-pr…

The always erudite <a href="/timoreilly/">Tim O'Reilly</a> on why the SV “blitzscaling” mantra causes more harm than good.

I feel that part of the reason so many security products are so user-hostile (&amp; mostly suck) is because currently, VCs pick winners instead of customers.

qz.com/1540608/the-pr…
j00ru//vx (@j00ru) 's Twitter Profile Photo

For those interested in coverage-guided fuzzing, I've just released CmpCov - an instrumentation module for clang/SanitizerCoverage, which breaks down CMP/strcmp()/etc. into bytes and writes the extra coverage data to standard .sancov files. Get it here: github.com/googleprojectz…

Matt Miller (@epakskape) 's Twitter Profile Photo

Here's the video recording for my presentation at #bluehatil last week on "Trends, Challenges, and Strategic Shifts in the Software Vulnerability Mitigation Landscape" youtube.com/watch?v=PjbGoj…

James Forshaw (@tiraniddo) 's Twitter Profile Photo

New blog release "Accessing Access Token for UIAccess" on restoring some small part of the older token stealing attack which was killed in Windows 10 RS5. Contains an example PS script to script an admin command prompt 😄 tyranidslair.blogspot.com/2019/02/access…