Danilo Erazo

177 posts

Danilo Erazo banner
Danilo Erazo

Danilo Erazo

@revers3vrything

🚘🏴‍☠️ Security Researcher at @pcacybersec , Pentester, Unlocking cars around the🌎 Ham radio, Rap🎙️

Budapest, Hungary Katılım Ağustos 2011
445 Takip Edilen244 Takipçiler
Danilo Erazo retweetledi
blasty
blasty@bl4sty·
@lina/116198976928184530" target="_blank" rel="nofollow noopener">vt.social/@lina/11619897… this sums up the CTF vs LLM stuff nicely. Good job @Lina_Hoshino ! the competitive metric (ctftime) is dead/a gimmick at this point... .. as a retired and washed up competitive ctf player with user id #18 on ctftime it is kinda saddening to see it implode like this. ;-( I simply don't see any workable solution to bring back fair competitive CTF (with varying difficulty). you could argue "well anyone can use the LLM's, that levels the playing field". by definition that means 1) you need anti-LLM (difficult) tasks, killing the element of having varying difficulty ("something fun for everyone"). 2) teams/entities with cashflow could buy more clankers/compute/access to more expensive models, etc. 3) you're really gonna sit there and watch codex dream up "the house of force" instead of revisiting github dot com slash shellphish slash how2heap all by yourself and yes I'm aware of all the various "underhanded" CTF tactics teams have employed over the years (where is that picture of the iceberg?); but forcing everyone who wants to compete to start using the ridiculous cheatcode doesn't feel like it addresses/fixes anything.. back in the days when we had to address fairness adjustment in the scoring algo of individual CTFs or ctftime as a whole we'd have a civil discussion (that would sometimes quickly erupt into a full on flamewar) on IRC with the involved parties. I'm afraid the solution is not so simple this time around :) yo @kyprizel @leetmore @snkdna @hellman1908 I'm curious to hear how you people feel/think about this situation
English
6
16
118
11K
Danilo Erazo retweetledi
TrendAI Zero Day Initiative
Confirmed! Mia Miku Deutsch (@newbe3e) exploited a stack-based buffer overflow against the Alpine iLX‑F511, earning $10,000 USD and 2 Master of Pwn points. #Pwn2Own #P2OAuto
TrendAI Zero Day Initiative tweet mediaTrendAI Zero Day Initiative tweet media
English
3
9
100
16.6K
Danilo Erazo retweetledi
RE//verse
RE//verse@REverseConf·
Be in the room for Hacking the Xbox One at RE//verse 2026! The console built on the word “unhackable” finally gets a full hardware attack story from bootrom to broken chain of trust. This March in Orlando, do not miss it. Get your tickets now: shop.binary.ninja/collections/re…
English
4
15
55
9.9K
Danilo Erazo retweetledi
FFmpeg
FFmpeg@FFmpeg·
This "vulnerability" in FFmpeg demonstrates clearly the alarmist nature of @MITREcorp @MITREattack A pixel could theoretically be the wrong colour because of an integer overflow. As this is theoretically possible over a network, it's "High Severity" ubuntu.com/security/CVE-2…
FFmpeg tweet media
English
48
78
1.6K
166.3K
Danilo Erazo retweetledi
RE//verse
RE//verse@REverseConf·
You won't want to miss Danilo Erazo's (@revers3vrything) talk! A previously unknown automotive RTOS reversed end to end and a secure boot flaw that lets attackers take over the entire head unit. New bugs and new attack paths shown for the first time at RE//verse. Get your ticket now: shop.binary.ninja/collections/re…
RE//verse tweet media
English
0
4
11
1.4K
Danilo Erazo retweetledi
AxelMetal - AXCYBERSEC
AxelMetal - AXCYBERSEC@AxelMetalCyber·
OJO que no te puedes perder este excelente episodio en el espacio de La Jaula del N00b compartiendo experiencias de Hardware y Car Hacking junto a Danilo Erazo @revers3vrything 🥷🚗💻 @debugsec1337 @HackersOIHEC @poolfme #hacking #hackers #podcast #infosec #CyberSecurity
La Jaula del N00b@LaJauladelN00b

✨Episodio nuevo en tu podcast favorito de hackers La Jaula del N00b con un un Hardware Hacker @revers3vrything NO te lo puedes perder!! 😎🔥🇲🇽🇪🇨🎙️ @debugsec1337 @HackersOIHEC @poolfme @AxelMetalCyber #hacking #hackers #podcast #infosec #CyberSecurity youtu.be/PR7QFWKiK_k?si…

Español
0
4
9
2.1K
Danilo Erazo retweetledi
Danilo Erazo retweetledi
TheSAS2025
TheSAS2025@TheSAScon·
Don't expect us to recap @revers3vrything's #TheSAS2025 talk in deep detail. He's an expert rapper (literally), and he uses his skills to the fullest extent to spell out all the chip names in a KIA head unit right now 🕶
TheSAS2025 tweet media
English
0
2
8
1.1K
Danilo Erazo
Danilo Erazo@revers3vrything·
Today is my talk #TheSAS2025 let's discover this KIA Zero Day
TheSAS2025@TheSAScon

🚗 Remember the Kia challenge? Apparently it wasn't the last vulnerability in Kia head units. Meet Danilo Erazo (@revers3vrything) - independent automotive security researcher, rapper (!), DEF CON speaker, and Car Hacking Villa organizer at Ekoparty. His #TheSAS2025 talk title hits different: "Kia zero day: First automotive QR phishing attack" We're already drafting our question list - and there'll be plenty of networking opportunities to get all the juicy details. 🎯 Ready to join the ride? kas.pr/6rx9

English
0
0
3
681
Danilo Erazo
Danilo Erazo@revers3vrything·
First talk in #TheSAS2025 talk, Zero Day in Chrome: CVE-2025-2783
Danilo Erazo tweet media
English
2
8
60
5.9K
Danilo Erazo retweetledi
TheSAS2025
TheSAS2025@TheSAScon·
🚗 Remember the Kia challenge? Apparently it wasn't the last vulnerability in Kia head units. Meet Danilo Erazo (@revers3vrything) - independent automotive security researcher, rapper (!), DEF CON speaker, and Car Hacking Villa organizer at Ekoparty. His #TheSAS2025 talk title hits different: "Kia zero day: First automotive QR phishing attack" We're already drafting our question list - and there'll be plenty of networking opportunities to get all the juicy details. 🎯 Ready to join the ride? kas.pr/6rx9
TheSAS2025 tweet media
English
0
1
3
1.6K