|
Rodrigo Branco
@
bsdaemon
United States
|
|
Senior Principal Engineer at Amazon. Past: Chief Security Researcher at Intel and Check Point.
Opinions are my own
H2HC (Hackers 2 Hackers Conference) Organizer
|
|
|
2.787
Tweetovi
|
1.945
Pratim
|
9.179
Osobe koje vas prate
|
| Tweetovi |
| Rodrigo Branco proslijedio/la je tweet | ||
|
Black Hat
@BlackHatEvents
|
3. velj |
|
Announcement: The Black Hat USA Call for Papers is now open! Submit your proposal for the chance to present your research at the premier security conference in Vegas. View the submission requirements and apply here: ow.ly/6zbW50yck7o
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
3. velj |
|
It is about time!! Great addition to the team.
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
3. velj |
|
Some folks reached out to ask if anything bad happened regarding Intel, so I thought a clarification is in order: I believe Intel has super interesting challenges to work on and amazing people that still work there. It just happens that a lot of the recent problems are bad.
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
2. velj |
|
In my opinion this conference really represents the spirit of hacking. I hope the submissions keep going their way! twitter.com/CiderSecCon/st…
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
2. velj |
|
I agree. MPX promised too much, delivered too little and damaged the real path forward which is memory tagging. It also had ridiculous ideas, like be a NOP in uarchs that dont support it to avoid recompilation, but in that case, one would have no security checks?
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
2. velj |
|
The problem in TSX is really the validation strategy. The amount of bugs demonstrate that not a lot of thought was put on that. This is usual, as you know...
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
2. velj |
|
TSX has more promising usages than MPX, but to me is another failure due to "whoever engineers it do not understand the actual SW stack and is an arrogant prick trying to get career advantages"
|
||
|
|
||
| Rodrigo Branco proslijedio/la je tweet | ||
|
Matthew S. Wilson
@_msw_
|
31. sij |
|
💯 THIS ⬇️.
_And_, my additional advice is: don't hope that your competitors have poor operational practices. If they have a #HugOps day, it isn't necessarily good for you, customers, or the market segments you are part of. twitter.com/allspaw/status…
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
1. velj |
|
Boom. Bad technology from the beginning. Even trying to force adoption by spending millions implementing support, no real adoption. Consequences to the career-based decision making process inside the company? Zero. The promoted person remains promoted ;) twitter.com/grsecurity/sta…
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
1. velj |
|
That is awesome!! What a team! twitter.com/_minipli/statu…
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
30. sij |
|
We even used their performance tests to measure impact of compiler-based mitigations in the past. Comprehensive and in a complex enough project.
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
29. sij |
|
Even citing a patent because a 3rd party publically mentioned it to you (and as so you are aware of its existence) is potentially problematic for some companies/legal teams.
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
27. sij |
|
In Texas (Dallas region)
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
27. sij |
|
Indeed many teams in the security org is hiring!! If you interested, drop me an email and I can definitely connect.
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
27. sij |
|
2 weeks of Day 1! And many more to come, if it is God's will!
|
||
|
|
||
|
Rodrigo Branco
@bsdaemon
|
26. sij |
|
I've just completed 2 weeks at Amazon. The culture is impressive. People are great and the speed is amazing. I am really proud and glad to be a part of it #bepeculiar twitter.com/_msw_/status/1…
|
||
|
|
||
| Rodrigo Branco proslijedio/la je tweet | ||
|
Dino A. Dai Zovi
@dinodaizovi
|
22. sij |
|
I talked about the defender's advantage at scale at @h2hconference this year:
theta44.org/presentations.…
|
||
|
|
||
| Rodrigo Branco proslijedio/la je tweet | ||
|
CiderSecCon
@CiderSecCon
|
21. sij |
|
Tickets! Tickets! Tickets!
Our ticket sale is now officially Open!
cidersecuritycon.de/posts/2020/01/…
|
||
|
|
||
| Rodrigo Branco proslijedio/la je tweet | ||
|
Gynvael Coldwind
@gynvael
|
20. sij |
|
If you're into programming, hacking, retro computers, electronics, etc check out our free magazine:
💾 pagedout.institute
Issues #1 and #2 are already out!
For Issue #3 we're looking for:
- Articles and Art!
- Free community ads!
- And sponsorship ads!
Deadline: 20.02.20 pic.twitter.com/1uXNBMD8Nj
|
||
|
|
||
| Rodrigo Branco proslijedio/la je tweet | ||
|
Yarden Shafir
@yarden_shafir
|
16. sij |
|
After a lot of work and some crypto-related delays, I couldn't be more proud to publish @aionescu's and mine latest research - The complete overview of CET internals on Windows (so far!):
windows-internals.com/cet-on-windows/
|
||
|
|
||