Assaf Carlsbad (@assaf_carlsbad) 's Twitter Profile
Assaf Carlsbad

@assaf_carlsbad

Security Researcher

ID: 878918996661338112

calendar_today25-06-2017 10:13:13

236 Tweet

1,1K Takipรงi

78 Takip Edilen

Jeremy Boone (@uffeux) 's Twitter Profile Photo

I reported a SMM TOCTOU vuln to Intel, but unfortunately it was a dupe of an internally discovered issue. Intel's advisory was vague, so I decided to publish my own detailed analysis. Check it out: research.nccgroup.com/2023/03/15/a-rโ€ฆ

Hex-Rays SA (@hexrayssa) 's Twitter Profile Photo

You suspect there should be a cross-reference in the listing, but IDA isnโ€™t showing it? See how to find it ๐ŸŒ hex-rays.com/blog/igors-tipโ€ฆ #IgorsTipOfTheWeek #IDAtips #IDAPro

You suspect there should be a cross-reference in the listing, but IDA isnโ€™t showing it? See how to find it ๐ŸŒ hex-rays.com/blog/igors-tipโ€ฆ

#IgorsTipOfTheWeek #IDAtips #IDAPro
The Haagโ„ข (@m_haggis) 's Twitter Profile Photo

Introducing the Living Off The Land Drivers (LOLDrivers) project, a crucial resource that consolidates vulnerable and malicious drivers in one place to streamline research and analysis. loldrivers.io LOLDrivers enhances awareness of driver-related security risks and

Yossi Sheriff (@yossi_sheriff) 's Twitter Profile Photo

ื‘ื“ืจืš ืœื‘ื ื™ื™ืŸ ื”ืžืงื“ืฉ ื”ื™ืคื ื™, ืžืกื‘ื™ืจ ืœื™ ื”ื‘ื•ืงืจ ืžืจ ืงื™ืฆืณื™ ืฆืณื ื˜ืจื•, ืžืืกื˜ืจ ื ื’ืจ, ื—ื™ื™ื‘ื™ื ืœื—ื“ื“ ื•ืœืœื˜ืฉ ืืช ื”ื›ืœื™ื ื”ืžืชืื™ืžื™ื ื›ืœ ืคืขื ืžื—ื“ืฉ. ื›ืžื•ื‘ืŸ, ืื ื”ื›ืœื™ื ืœื ืžืชืื™ืžื™ื, ืื™ ืืคืฉืจ ืœื‘ื ื•ืช ื›ืœื•ื. youtu.be/1iI4vE3SXdk

Assaf Carlsbad (@assaf_carlsbad) 's Twitter Profile Photo

ืจึทื‘ึดึผื™ ื™ื•ึนื—ึธื ึธืŸ ื”ึทืกึทึผื ึฐื“ึฐึผืœึธืจ ืื•ึนืžึตืจ: ื›ึธึผืœ ื›ึฐึผื ึตืกึดื™ึธึผื” ืฉึถืื”ึดื™ื ืœึฐืฉึตืื ืฉึธืืžึทื™ึดื, ืกื•ึนืคึธื”ึผ ืœึฐื”ึดืชึฐืงึทื™ึตึผื; ื•ึฐืฉึถืืึตื™ื ึธื”ึผ ืœึฐืฉึตืื ืฉึธืืžึทื™ึดื, ืึตื™ืŸ ืกื•ึนืคึธื” ืœึฐื”ึดืชึฐืงึทื™ึตึผื:

uefitool (@uefitool) 's Twitter Profile Photo

Updated UEFITool and related tools to A66: - added GUID DB generation to UEFIExtract, it will help us expand our built-in GUID DB by parsing UEFI image archives. - Qt 6.5.0 brough better support for UI mode switching. - Hex View window looks nicer now. github.com/LongSoft/UEFITโ€ฆ

Assaf Carlsbad (@assaf_carlsbad) 's Twitter Profile Photo

ืจึทื‘ึดึผื™ ื™ื•ึนื ึธืชึธืŸ ืื•ึนืžึตืจ: ื›ึธึผืœ ื”ึทืžึฐึผืงึทื™ึตึผื ืึถืช ื”ึทืชึผื•ึนืจึธื” ืžึตืขึนื ึดื™, ืกื•ึนืคื•ึน ืœึฐืงึทื™ึฐึผืžึธื”ึผ ืžึตืขึนืฉึถืืจ; ื•ึฐื›ึธืœ ื”ึทืžึฐึผื‘ึทื˜ึตึผืœ ืึถืช ื”ึทืชึผื•ึนืจึธื” ืžึตืขึนืฉึถืืจ, ืกื•ึนืคื•ึน ืœึฐื‘ึทื˜ึฐึผืœึธื”ึผ ืžึตืขึนื ึดื™: calcalist.co.il/calcalistech/aโ€ฆ

Gal Z (@0xgalz) 's Twitter Profile Photo

All my OpenSecurityTraining2 Reverse Engineering C++ training videos are now on YouTube! If you want to register for the full training you can do it here: ost2.fyi/RE3011

Assaf Carlsbad (@assaf_carlsbad) 's Twitter Profile Photo

Great stuff!๐Ÿ˜ƒ Still surprised to find modern binaries that lack almost all available mitigations (*ahem* NVIDIA *ahem*)

Great stuff!๐Ÿ˜ƒ
Still surprised to find modern binaries that lack almost all available mitigations (*ahem* NVIDIA *ahem*)
ื‘ืจ ื ืชื™ื‘, ื”ื”ื™ื ืžืฉื˜ื™ื™ื’ืขืŸ (@shteygen) 's Twitter Profile Photo

ืขื•ื“ ื›ืžื” ืฉื‘ื•ืขื•ืช ื™ืฆื™ื™ื ื• 100 ืฉื ื” ืœื“ืฃ ื”ื™ื•ืžื™ ื•ื‘ื˜ื— ื™ืขืฉื• ืขืœ ื–ื” ื›ืœ ืžื™ื ื™ ื›ืชื‘ื•ืช ื™ืคื•ืช. ืื– ืื ื™ืฉ ืคื” ืžื™ืฉื”ื• ืฉืœื ืœืžื“ ื’ืžืจื ืืฃ ืคืขื ื•ื—ื•ืฉื‘ ืœื”ืชื—ื™ืœ ื“ืฃ ื™ื•ืžื™, ื™ืฉ ืœื™ ืขืฆื” ืื—ืช >>

ืขื•ื“ ื›ืžื” ืฉื‘ื•ืขื•ืช ื™ืฆื™ื™ื ื• 100 ืฉื ื” ืœื“ืฃ ื”ื™ื•ืžื™ ื•ื‘ื˜ื— ื™ืขืฉื• ืขืœ ื–ื” ื›ืœ ืžื™ื ื™ ื›ืชื‘ื•ืช ื™ืคื•ืช. 

ืื– ืื ื™ืฉ ืคื” ืžื™ืฉื”ื• ืฉืœื ืœืžื“ ื’ืžืจื ืืฃ ืคืขื ื•ื—ื•ืฉื‘ ืœื”ืชื—ื™ืœ ื“ืฃ ื™ื•ืžื™, ื™ืฉ ืœื™ ืขืฆื” ืื—ืช >>
Nadav Halperin (@nadavhlp) 's Twitter Profile Photo

ื’ืขื’ื•ืขื™ื ืœืœื™ื‘ื•ื‘ื™ืฅ ืชื—ื•ื ืฉื‘ืช ื‘ืžืงื•ืจ ืจืืฉื•ืŸ ืขืœ ื’ืขื’ื•ืขื™ ื”ื™ืฉืจืืœื™ื•ืช ืœืคืจื•ืค' ืœื™ื‘ื•ื‘ื™ืฅ (29 ืฉื ื™ื ืœืœื›ืชื•) ื•ืขืœ ื•ื•ืื˜ืื‘ืื•ื˜ื™ื–ื ื›ืขื‘ื•ื“ื” ื–ืจื”

ื’ืขื’ื•ืขื™ื ืœืœื™ื‘ื•ื‘ื™ืฅ

ืชื—ื•ื ืฉื‘ืช ื‘ืžืงื•ืจ ืจืืฉื•ืŸ ืขืœ ื’ืขื’ื•ืขื™ ื”ื™ืฉืจืืœื™ื•ืช ืœืคืจื•ืค' ืœื™ื‘ื•ื‘ื™ืฅ (29 ืฉื ื™ื ืœืœื›ืชื•) ื•ืขืœ ื•ื•ืื˜ืื‘ืื•ื˜ื™ื–ื ื›ืขื‘ื•ื“ื” ื–ืจื”
ื‘ืจ ื ืชื™ื‘, ื”ื”ื™ื ืžืฉื˜ื™ื™ื’ืขืŸ (@shteygen) 's Twitter Profile Photo

ื”ืคืกืงื•ืœ ืฉืœ ื”ื™ืžื™ื ื”ืงืจื•ื‘ื™ื ื”ื•ืœืš ืœื”ื™ื•ืช ืงื“ื™ืฉ. ื•ืื ื™ ืžื ืกื” ืœื›ืชื•ื‘ ืฉืจืฉื•ืจ ืฉืื•ืœื™ ื™ืขื–ื•ืจ ืœืžื™ ืฉื ื‘ื•ืš ืžื•ืœ ื”ืชืคื™ืœื” ื”ื–ื• ืื‘ืœ ืื ื™ ืœื ืžืฆืœื™ื—ื”. ืœื ืžืฆืœื™ื—ื” ืœืืจื’ืŸ ืืช ื”ืžื—ืฉื‘ื•ืช ื•ืœื ืžืฆืœื™ื—ื” ืœื–ื›ื•ืจ ืืช ื”ืคืจื˜ื™ื ื•ื‘ืขื™ืงืจ ืžืจื’ื™ืฉื” ื‘ืžืœื•ื ื”ืขื•ืฆืžื” ืืช ื”ืื‘ืกื•ืจื“ ืฉืœ ืœืขืžื•ื“ ืขืœ ืงื‘ืจ ืคืชื•ื— ื•ืœื”ืœืœ ืืช ืืœื•ื”ื™ื ืื ืกื” ื•ืชืกืœื—ื• ืœื™ ืฉื–ื” ืžื‘ื•ืœื’ืŸ>

ื”ืคืกืงื•ืœ ืฉืœ ื”ื™ืžื™ื ื”ืงืจื•ื‘ื™ื ื”ื•ืœืš ืœื”ื™ื•ืช ืงื“ื™ืฉ.

ื•ืื ื™ ืžื ืกื” ืœื›ืชื•ื‘ ืฉืจืฉื•ืจ ืฉืื•ืœื™ ื™ืขื–ื•ืจ ืœืžื™ ืฉื ื‘ื•ืš ืžื•ืœ ื”ืชืคื™ืœื” ื”ื–ื• ืื‘ืœ ืื ื™ ืœื ืžืฆืœื™ื—ื”.

ืœื ืžืฆืœื™ื—ื” ืœืืจื’ืŸ ืืช ื”ืžื—ืฉื‘ื•ืช ื•ืœื ืžืฆืœื™ื—ื” ืœื–ื›ื•ืจ ืืช ื”ืคืจื˜ื™ื ื•ื‘ืขื™ืงืจ ืžืจื’ื™ืฉื” ื‘ืžืœื•ื ื”ืขื•ืฆืžื” ืืช ื”ืื‘ืกื•ืจื“ ืฉืœ ืœืขืžื•ื“ ืขืœ ืงื‘ืจ ืคืชื•ื— ื•ืœื”ืœืœ ืืช ืืœื•ื”ื™ื

ืื ืกื” ื•ืชืกืœื—ื• ืœื™ ืฉื–ื” ืžื‘ื•ืœื’ืŸ>
Shift (@shiftreduce) 's Twitter Profile Photo

our small team is actively looking for more research projects, if your company is looking vr/reverse engineering projects i'd be happy to talk

Assaf Carlsbad (@assaf_carlsbad) 's Twitter Profile Photo

ื‘ืจื•ื— ื”ืชืงื•ืคื” ื’ื ืื ื™ ื”ืงืžืชื™ ื—ื‘ืจืช ืกื™ื™ื‘ืจ ื—ื“ืฉื”

ื‘ืจื•ื— ื”ืชืงื•ืคื” ื’ื ืื ื™ ื”ืงืžืชื™ ื—ื‘ืจืช ืกื™ื™ื‘ืจ ื—ื“ืฉื”