|
Alex Bazhaniuk
@
ABazhaniuk
California, USA
|
|
Founder and CTO at @eclypsium
|
|
|
6.320
Tweetovi
|
1.534
Pratim
|
3.901
Osobe koje vas prate
|
| Tweetovi |
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
ringzerø.training
@_ringzer0
|
22. sij |
|
Learn the fundamentals of firmware attacks via @eclypsium. bit.ly/firmware-attac…
Then master firmware exploitation with @hackingthings, @jessemichael, and @kc8apf at #Ringzer0. bit.ly/ringzero-firmw… 🔥 bit.ly/ringzero-firmw… pic.twitter.com/wUmQFb3PsB
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
31. sij |
|
The January Eclypsium Firmware Threat Report is now out. Take a look at it here: bit.ly/38XIDI5 pic.twitter.com/A1me5KH9A6
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Yuriy Bulygin
@c7zero
|
31. sij |
|
Come work with an awesome research team on firmware and hardware threats! twitter.com/kc8apf/status/…
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Rick Altherr
@kc8apf
|
30. sij |
|
Our research team @eclypsium is growing. If you're interested in developing detection methods for PC firmware threats and vulnerabilities, send your resume/CV to careers@eclypsium.com. Portland, USA or Córdoba, Argentina preferred. DMs open for questions.
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Rick Altherr
@kc8apf
|
28. sij |
|
I'll be giving trainings similar to what Richard attended at both CanSecWest (cansecwest.com/dojos/2020/fir…) and Ringzer0 (ringzer0.training/finding-firmwa…) this year. If you're unsure it will be useful for you, get in touch and I'll gladly answer questions.
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
30. sij |
|
Eclypsium published new research exposing vulnerabilities to DMA attacks in laptops from HP and Dell. Our principal researchers, @HackingThings and @jessemichael show that high speed DMA attacks can bypass hardware protections on enterprise devices. bit.ly/313EEqN pic.twitter.com/OWhEux8F78
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
30. sij |
|
What happened when @hackingthings & @jessemichael looked at HP & Dell laptops for DMA vulnerabilities? They found some. Join them for a Q&A on Feb. 5 to hear more and ask questions. Register here: bit.ly/37G5JCB. #FirmwareSecurity #Firmware, #MemoryLane pic.twitter.com/bZXEe9NBxT
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
30. sij |
|
Join Eclypsium's principal researchers @HackingThings & @Jessemichael for a Q&A on their new research on DMA attacks on Feb. 5. To register go to: bit.ly/2GCvmbM. #FirmwareSecurity, #MemoryLane, #Firmware. pic.twitter.com/LSHwxssAcd
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Yuriy Bulygin
@c7zero
|
30. sij |
|
Been also great working with HP and Dell teams on this complex industry problem. Happy to see firmware updates were released promptly
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Yuriy Bulygin
@c7zero
|
30. sij |
|
Our new research demonstrates that DMA attacks can compromise firmware (and OS) on enterprise laptops with hardware root of trust capabilities among the best in the industry. Very proud to work with the team here at @eclypsium twitter.com/eclypsium/stat…
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
John Loucaides
@JohnLoucaides
|
25. sij |
|
Great summary of risks and mitigations related to cloud. Easy to see how firmware/hardware fit into this given cloudborne (targeting multi-tenancy), bmc vulns (in supply chain), and myriad of recent hw issues (often config or firmware patch related). twitter.com/NSAGov/status/…
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Mark Ermolov
@_markel___
|
22. sij |
|
We've found a bug in CSME on-die ROM!💥 Intel says it's already targeted by CVE-2019-0090 (intel.com/content/www/us…). Security Fuses can be extracted! 🔥 Mehlow and Cannon Point chipsets are affected. Stay tuned!
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
offensivecon
@offensive_con
|
21. sij |
|
Untrusted Roots: exploiting vulnerabilities in Intel ACMs by @flothrone offensivecon.org/speakers/2020/…
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Oxide Computer Company
@oxidecomputer
|
13. sij |
|
🚨 New On the Metal episode w/ @kc8apf 🚨
Join us as we discuss impossible bugs, fires in the data center, reverse engineering BMC firmware, BMC vulnerabilities, Cray computers, and Windows NT on MIPS. Yup you heard that right!
oxide.computer/blog/on-the-me…
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
21. sij |
|
Since 2016, #Firmware vulnerabilities have grown a staggering 750%. Read our new article here: bit.ly/2THclwx pic.twitter.com/RzVVcPADhR
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Mark Ermolov
@_markel___
|
20. sij |
|
Intel Cannon Point chipset (300 series) as well as Apollo Lake and Gemini Lake SoCs have very dangerous Delayed Authentication Mode (DAM) vulnerability allowing arbitrary code execution and the root key prediction. Detailed write-up is coming. Stay tuned.
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
14. sij |
|
Eclypsium’s researchers @HackingThings and @jessemichael are providing a two day hands-on course in building and using UEFI implants as part of the #CanSecWest 2020: Security Masters Dojo. For information/register: bit.ly/2NsdWCp pic.twitter.com/LjB9wXzyKK
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
14. sij |
|
Listen to On the Metal podcast starring Eclypsium's @kc8apf. Rick discusses #firmware as the latest attack vector, impossible bugs and the impact these attacks have on organizations. Listen here: bit.ly/3ad1jVs
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
14. sij |
|
Join Eclypsium’s top researchers for firmware security courses at #CanSecWest 2020. For more information/register: Mar 14-15 Practical Firmware Implants- bit.ly/2RhgF2y and Mar 16-17 Finding Firmware Implants-bit.ly/2tdz9Jm pic.twitter.com/aIU78yQI3u
|
||
|
|
||
| Alex Bazhaniuk proslijedio/la je tweet | ||
|
Eclypsium
@eclypsium
|
6. sij |
|
Still catching up on your post-holiday security reading? Get Eclypsium's December Threat Report with the latest research and news on #firmware security. bit.ly/2ZXnLO0 pic.twitter.com/ISv7UMVzFV
|
||
|
|
||