Igor Bogdanov (@igorbog61650384) 's Twitter Profile
Igor Bogdanov

@igorbog61650384

Introverted blue teamer and hobbiest hardware researcher - I like to find out how things work, and prevent others from breaking them.

ID: 1355832365499748352

calendar_today31-01-2021 10:57:30

47 Tweet

1,1K Takipçi

135 Takip Edilen

Mark Ermolov (@_markel___) 's Twitter Profile Photo

Now I know that there's an undocumented condition under which CPUID instruction can raise #GP exception being called from user mode...

Now I know that there's an undocumented condition under which CPUID instruction can raise #GP exception being called from user mode...
Igor Bogdanov (@igorbog61650384) 's Twitter Profile Photo

I've been busy with my day job (some serious incident response, I'll post about it, promise!), but managed to squeeze in a new blog post where I dig into the GuC from the PC firmware side igor-blue.github.io/2021/02/24/gra… . Enjoy!

Igor Bogdanov (@igorbog61650384) 's Twitter Profile Photo

You can safely skip this tweet, just venting. This was a very rough day - made a mistake during an IR this morning and the bad guys know we now about them and pulled out all of their assets from the network. Spent like 18 hours straight collecting forensics ....

Igor Bogdanov (@igorbog61650384) 's Twitter Profile Photo

Ever found malware by seeing something weird in a network capture? First time for me: igor-blue.github.io/2021/03/24/apt… . This is what I have been busy doing the last few weeks. Enjoy!

Mark Ermolov (@_markel___) 's Twitter Profile Photo

Intel Platform Firmware Resilience technology speaks volumes about Intel's commitment to Security Through Obscurity policy. They consistently raise the bar for third party analysis of their Root of Trust. It won't help although, the focus will shift to microcode now...

Intel Platform Firmware Resilience technology speaks volumes about Intel's commitment to Security Through Obscurity policy. They consistently raise the bar for third party analysis of their Root of Trust. It won't help although, the focus will shift to microcode now...