Marius Momeu (@mariusmomeu) 's Twitter Profile
Marius Momeu

@mariusmomeu

Systems security researcher @TU_Muenchen.

ID: 1067074097933361152

linkhttp://sec.in.tum.de/i20/people/momeu-marius calendar_today26-11-2018 15:14:25

44 Tweet

43 Followers

289 Following

SSD Secure Disclosure (@securiteam_ssd) 's Twitter Profile Photo

New advisory is now out! The Nighthawk R7000 is a popular Netgear router, with over 50,000 positive reviews on Amazon. Find out how a vulnerability in NETGEAR R7000 allows an attacker to run arbitrary code without requiring authentication. ssd-disclosure.com/ssd-advisory-n…

Mark (@offlinemark) 's Twitter Profile Photo

Here's my favorite git feature that no one knows about: You can reference commits using the commit message instead of the hash. The ":/" syntax accepts a regex that matches any part of the commit message, returning the youngest matching commit. git-scm.com/docs/revisions…

Here's my favorite git feature that no one knows about:

You can reference commits using the commit message instead of the hash. The ":/" syntax accepts a regex that matches any part of the commit message, returning the youngest matching commit.

git-scm.com/docs/revisions…
Steve Weis (@sweis) 's Twitter Profile Photo

“I See Dead μops: Leaking Secrets via Intel/AMD Micro-Op Caches” claims to break Spectre mitigations: cs.virginia.edu/~av6ds/papers/…

“I See Dead μops: Leaking Secrets via Intel/AMD Micro-Op Caches” claims to break Spectre mitigations:
cs.virginia.edu/~av6ds/papers/…
Zuk (@ihackbanme) 's Twitter Profile Photo

The author of this post found the SolarWinds attack a 2-3 months before FireEye's announcement on December 8th 🤯reddit.com/r/Solarwinds/c…

The author of this post found the SolarWinds attack a 2-3 months before FireEye's announcement on December 8th 🤯reddit.com/r/Solarwinds/c…
Vasileios Kemerlis (@vkemerlis) 's Twitter Profile Photo

Tune in if you're interested in our work on protecting against data-only attacks using HW-assisted virtualization. #xMP: cs.brown.edu/~vpk/papers/xm… (IEEE S&P #SP20) -- Cc: Sergej Proskurin Marius Momeu Seyedhamed Ghavamnia michalis

Jason Kint (@jason_kint) 's Twitter Profile Photo

incoming… google more unsealed docs, this time in the Google case led by Arizona Attorney General. The newly unsealed material is underlined in green unsealed this week (left). Last year, Google proactively unsealed less risky material (right) when Judge first ruled. /1

incoming… 
google

more unsealed docs, this time in the Google case led by Arizona Attorney General.  
The newly unsealed material is underlined in green unsealed this week (left). Last year, Google proactively unsealed less risky material (right) when Judge first ruled. /1
Florian Hansemann (@cyberwarship) 's Twitter Profile Photo

Windows Kernel Exploitation Tutorial Part 1: Setup rootkits.xyz/blog/2017/06/k… Part 2: Stack Overflow rootkits.xyz/blog/2017/08/k… Part 3: Memory Overwrite rootkits.xyz/blog/2017/09/k… Part 4: Pool Overflow rootkits.xyz/blog/2017/11/k… Part 5: NULL Pointer Dereference rootkits.xyz/blog/2018/01/k…

Windows Kernel Exploitation Tutorial 

Part 1: Setup
rootkits.xyz/blog/2017/06/k…

Part 2: Stack Overflow
rootkits.xyz/blog/2017/08/k…

Part 3: Memory Overwrite
rootkits.xyz/blog/2017/09/k…

Part 4: Pool Overflow
rootkits.xyz/blog/2017/11/k…

Part 5: NULL Pointer Dereference
rootkits.xyz/blog/2018/01/k…
Cornelius Aschermann (@is_eqv) 's Twitter Profile Photo

Sergej Schumilo and I just published the code of our snapshot based hypervisor fuzzer Nyx github.com/RUB-SysSec/Nyx. Paper and talk: usenix.org/conference/use…. Stay tuned for a much more polished version at nyx-fuzz.com

<a href="/ms_s3c/">Sergej Schumilo</a> and I just published the code of our snapshot based hypervisor fuzzer Nyx github.com/RUB-SysSec/Nyx. Paper and talk: usenix.org/conference/use…. Stay tuned for a much more polished version at nyx-fuzz.com
sagitz (@sagitz_) 's Twitter Profile Photo

I'm excited to share information about our research, in which we (+Nir Ohfeld) found a critical vulnerability in Azure Cosmos DB itself - effectively allowing malicious actors to fully compromise databases of thousands of customers. Wiz #ChaosDB chaosdb.wiz.io

Felix Krause (@krausefx) 's Twitter Profile Photo

🔥 New Post: Announcing InAppBrowser - see what JavaScript commands get injected through an in-app browser 👀 TikTok, when opening any website in their app, injects tracking code that can monitor all keystrokes, including passwords, and all taps. krausefx.com/blog/announcin…

🔥 New Post: Announcing InAppBrowser - see what JavaScript commands get injected through an in-app browser

đź‘€ TikTok, when opening any website in their app, injects tracking code that can monitor all keystrokes, including passwords, and all taps.

krausefx.com/blog/announcin…
Vasileios Kemerlis (@vkemerlis) 's Twitter Profile Photo

📢Marius Momeu at AsiaCCS presenting our work on hardening SLAB-based (kernel) allocators, against memory errors, via SMAP-assisted isolation -- joint work with TU München, Sergej Proskurin, and michalis | cs.brown.edu/~vpk/papers/is… | #brownssl #islab

📢<a href="/MariusMomeu/">Marius Momeu</a> at <a href="/ASIACCS2024/">AsiaCCS</a> presenting our work on hardening SLAB-based (kernel) allocators, against memory errors, via SMAP-assisted isolation -- joint work with <a href="/TU_Muenchen/">TU München</a>, <a href="/proskurinserg/">Sergej Proskurin</a>, and <a href="/polychronakis/">michalis</a> | cs.brown.edu/~vpk/papers/is… | #brownssl #islab