Alex Matrosov (@matrosov) 's Twitter Profile
Alex Matrosov

@matrosov

๐Ÿ”ฌFounder & CEO @Binarly_io, #codeXplorer, #efiXplorer, @REhints and "Rootkits and Bootkits" book. Previously worked at Nvidia, Cylance, Intel, ESET, Yandex.

ID: 15426077

linkhttps://binarly.io calendar_today14-07-2008 13:01:52

9,9K Tweet

18,18K Takipรงi

2,2K Takip Edilen

BINARLY๐Ÿ”ฌ (@binarly_io) 's Twitter Profile Photo

๐Ÿš€efiXplorer just hit 1,000โญ๏ธ on GitHub! Huge thanks to everyone whoโ€™s used, supported, and shared feedback, you made this possible! github.com/binarly-io/efiโ€ฆ

BINARLY๐Ÿ”ฌ (@binarly_io) 's Twitter Profile Photo

๐ŸšจMore than a year after the XZ Utils crisis, we found 35+ publicly available Docker Hub images still carrying the backdoor, some tagged โ€œlatestโ€. Long-tail supply-chain risk is real! Read the blog: binarly.io/blog/persistenโ€ฆ

Alex Matrosov (@matrosov) 's Twitter Profile Photo

While helping a customer track down malicious code of #XZbackdoor in their environment, we traced the source back to Docker Hub images and quickly realized the scope was wider than expected.

Alex Matrosov (@matrosov) 's Twitter Profile Photo

Not much has changed in #codeXplorer since 2018, and the plugin was slowly becoming obsolete. I finally carved out some time, and with the help of Claude, have completely refactored the codebase and packed it with exciting new features. Stay tuned! github.com/REhints/HexRayโ€ฆ

Not much has changed in #codeXplorer since 2018, and the plugin was slowly becoming obsolete.

I finally carved out some time, and with the help of <a href="/claudeai/">Claude</a>, have completely refactored the codebase and packed it with exciting new features. Stay tuned!

github.com/REhints/HexRayโ€ฆ
Wil Gibbs (@cl4sm) 's Twitter Profile Photo

While playing DEF CON CTF Finals with Shellphish I managed to solve the ICO challenge using LLMs (GPT5 + Cursor) and almost no human intervention. You can read how I did it here! wilgibbs.com/blog/defcon-fiโ€ฆ

JEB Decompiler (@jebdec) 's Twitter Profile Photo

JEB 5.31 ships with a generic SASS disassembler and experimental decompiler for GPU code compiled for Nvidia architectures Volta to Blackwell (compute capabilities sm_70 to sm_121) #ReverseEngineering Learn more here: pnfsoftware.com/blog/reversingโ€ฆ

Dinesh Shetty (@din3zh) 's Twitter Profile Photo

CVE-2025-21479 Meta Quest 3 privilege escalation Exploit poc - github.com/FreeXR/eureka_โ€ฆ #root #MobileSecurity #infosec #dfir

CVE-2025-21479 Meta Quest 3 privilege escalation Exploit poc - github.com/FreeXR/eureka_โ€ฆ 

#root #MobileSecurity #infosec #dfir
้‚ฃไธช้ฅบๅญ๐Ÿฆ†(JJ) (@thatjiaozi) 's Twitter Profile Photo

As promised Blogpost is here! I find that a lot of the times people ask โ€œhow can researchers find complex bugsโ€ This is my small contribution to show how the journey looked for me. I presented this content at hitcon last week! bughunters.google.com/blog/580034147โ€ฆ

BINARLY๐Ÿ”ฌ (@binarly_io) 's Twitter Profile Photo

Weโ€™re proud to share that CERT/CC has published an advisory for a vulnerability originally disclosed by Binarly in July: ๐—•๐—ฅ๐—Ÿ๐—ฌ-๐——๐—ฉ๐—”-๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฑ-๐Ÿฌ๐Ÿฌ๐Ÿฑ: binarly.io/advisories/brlโ€ฆ ๐—ฉ๐—จ#๐Ÿฎ๐Ÿฌ๐Ÿต๐Ÿฌ๐Ÿต๐Ÿฑ: kb.cert.org/vuls/id/209095

Weโ€™re proud to share that CERT/CC has published an advisory for a vulnerability originally disclosed by Binarly in July:

๐—•๐—ฅ๐—Ÿ๐—ฌ-๐——๐—ฉ๐—”-๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฑ-๐Ÿฌ๐Ÿฌ๐Ÿฑ: binarly.io/advisories/brlโ€ฆ
๐—ฉ๐—จ#๐Ÿฎ๐Ÿฌ๐Ÿต๐Ÿฌ๐Ÿต๐Ÿฑ: kb.cert.org/vuls/id/209095
noperator (@noperator) 's Twitter Profile Photo

A new tool: Slice ๐Ÿ”ช With the help of build-free CodeQL and Tree-Sitter, Slice can help GPT-5 can reliably reproduce discovery of CVE-2025-37778: use-after-free vulnerability in the Linux kernel! noperator.dev/posts/slice/

A new tool: Slice ๐Ÿ”ช With the help of build-free CodeQL and Tree-Sitter, Slice can help GPT-5 can reliably reproduce discovery of CVE-2025-37778: use-after-free vulnerability in the Linux kernel! noperator.dev/posts/slice/
BINARLY๐Ÿ”ฌ (@binarly_io) 's Twitter Profile Photo

โœจBig news: Binarly is leveling up! @ChrisEng and Rick Congdon joins our Strategic Advisory Board ๐Ÿ‘ Both bring decades of experience shaping AppSec, GTM, and enterprise security. The future of software supply chain security starts at Binarly! ๐Ÿš€ binarly.io/news/binarly-nโ€ฆ

Alex Matrosov (@matrosov) 's Twitter Profile Photo

๐—ฆ๐—ผ๐—ณ๐˜๐˜„๐—ฎ๐—ฟ๐—ฒ ๐˜๐—ฟ๐—ฎ๐—ป๐˜€๐—ฝ๐—ฎ๐—ฟ๐—ฒ๐—ป๐—ฐ๐˜†, ๐˜‚๐—ป๐—ฑ๐—ฒ๐—ฟ๐˜€๐˜๐—ฎ๐—ป๐—ฑ๐—ถ๐—ป๐—ด, ๐—ฎ๐—ป๐—ฑ ๐—ถ๐—ป๐˜€๐—ฝ๐—ฒ๐—ฐ๐˜๐—ฎ๐—ฏ๐—ถ๐—น๐—ถ๐˜๐˜† ๐—ฎ๐—ฟ๐—ฒ๐—ปโ€™๐˜ ๐—ท๐˜‚๐˜€๐˜ ๐˜๐—ฒ๐—ฐ๐—ต๐—ป๐—ถ๐—ฐ๐—ฎ๐—น ๐—ฐ๐—ต๐—ฎ๐—น๐—น๐—ฒ๐—ป๐—ด๐—ฒ๐˜€, ๐˜๐—ต๐—ฒ๐˜†โ€™๐—ฟ๐—ฒ ๐—ป๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐—ฎ๐—น ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฝ๐—ฟ๐—ถ๐—ผ๐—ฟ๐—ถ๐˜๐—ถ๐—ฒ๐˜€. Every week brings fresh reminders that we

๐—ฆ๐—ผ๐—ณ๐˜๐˜„๐—ฎ๐—ฟ๐—ฒ ๐˜๐—ฟ๐—ฎ๐—ป๐˜€๐—ฝ๐—ฎ๐—ฟ๐—ฒ๐—ป๐—ฐ๐˜†, ๐˜‚๐—ป๐—ฑ๐—ฒ๐—ฟ๐˜€๐˜๐—ฎ๐—ป๐—ฑ๐—ถ๐—ป๐—ด, ๐—ฎ๐—ป๐—ฑ ๐—ถ๐—ป๐˜€๐—ฝ๐—ฒ๐—ฐ๐˜๐—ฎ๐—ฏ๐—ถ๐—น๐—ถ๐˜๐˜† ๐—ฎ๐—ฟ๐—ฒ๐—ปโ€™๐˜ ๐—ท๐˜‚๐˜€๐˜ ๐˜๐—ฒ๐—ฐ๐—ต๐—ป๐—ถ๐—ฐ๐—ฎ๐—น ๐—ฐ๐—ต๐—ฎ๐—น๐—น๐—ฒ๐—ป๐—ด๐—ฒ๐˜€, ๐˜๐—ต๐—ฒ๐˜†โ€™๐—ฟ๐—ฒ ๐—ป๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐—ฎ๐—น ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฝ๐—ฟ๐—ถ๐—ผ๐—ฟ๐—ถ๐˜๐—ถ๐—ฒ๐˜€. Every week brings fresh reminders that we