Mikko Kenttälä

1.1K posts

Mikko Kenttälä banner
Mikko Kenttälä

Mikko Kenttälä

@Turmio_

Hacking, Cyber and politics. Founder and CEO of @SensorFu. Board member: @KyberVPK / @JK_ry . InfoSec Specialist @effi_ry

Katılım Kasım 2009
399 Takip Edilen1.2K Takipçiler
Mikko Kenttälä retweetledi
Gergely Kalman
Gergely Kalman@gergely_kalman·
Apple has pretty much admitted that TCC doesn't work: They just reduced the payouts for full TCC bypasses om macOS by 83.6%! Until they come to their senses or confirm whether this is here to stay I won't report any TCC bypasses and won't research it either.
Csaba Fitzl@theevilbit

🧵Apple just devalued full TCC bypasses from 30,5k to 5k. Hard to interpret this in a good way. It feels like - we admit we can’t fix this shit and we don’t care or at least not willing to pay for it - we don’t care about privacy security.apple.com/bounty/categor…

English
1
6
65
11.6K
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
@MikaAaltola @SarasvuoJari Olin mukana Effin riveissä ottamassa kantaa tiedustelulainsäädäöntöön (myös kriittisesti) ja sanottava on kyllä, että lakihankkeelle oli todella vähän vastustusta. Jos tähän vaikuttaminen olisi ollut yksi kärkihankkeista, lienemme turvassa.
Suomi
0
4
18
1.5K
Mika Aaltola
Mika Aaltola@MikaAaltola·
Tiedustelulain kaataminen oli todennäköisesti yksi Venäjän tiedustelun kärkihankkeista Suomessa. On syytä epäillä, että verkostoja aktivoitiin vaikuttamaan mielipiteisiin ja kääntämään keskustelu lakia vastaan. Vahvistuva suomalainen tiedustelukyky nähtiin Moskovassa uhkana.
Suomi
38
126
1.9K
77K
Mikko Kenttälä retweetledi
LetsDefend
LetsDefend@LetsDefendIO·
Cybersecurity Advice
LetsDefend tweet media
English
34
320
3.1K
103.3K
Rob Joyce
Rob Joyce@RGB_Lights·
I’m at the point that I don’t need / want backpacks, notebooks, pens, lights, t-shirts and all of the other conference items. Despite that, it’s still a huge part of the conference experience. Anyone have a good estimate of what percent of giveaway swag is actually used?
GIF
English
30
2
51
8K
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
This may be good to know for researchers. If you are hunting bounties, it’s not worth reporting your findings. However, if you want to do good and help over 100 million Mac users, you should report it. @Apple will fix it. (3/3)
English
1
0
10
436
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
This is mentioned on current guideline: "For an issue to be eligible for an Apple Security Bounty, the issue you report must occur on the latest publicly available version (including beta versions) of iOS, iPadOS, macOS, tvOS, or watchOS with a standard configuration* .." (2/x)
English
1
0
7
492
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
Apple decided that the CVE-2022–46723 Calendar Arbitrary File Write vuln did not deserve a bounty because it only affected macOS Monterey, and Ventura was already in the beta phase and did not have this issue, even though Monterey was still the latest version in production. (1/x)
English
3
1
26
1.6K
Gergely Kalman
Gergely Kalman@gergely_kalman·
@Turmio_ This is absolutely f****ng brilliant, I learned a lot of new tricks. Well done, and thanks for sharing!
English
1
0
3
245
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
Sorry for the late release, and thanks to those who reminded me—it was the push I needed. :) The original plan was to release it after everything was settled with Apple regarding the bounty.
English
0
1
6
817
Mikko Kenttälä retweetledi
Ambassador Jonatan Vseviov
Both @ccdcoe and their flagship exercise #LockedShields have grown impressively - with over 3500 participants from 41 nations, this year’s exercise is the largest to date. Whole-of-society approach and international cooperation are a must in defending us in the cyber domain.
Ambassador Jonatan Vseviov tweet mediaAmbassador Jonatan Vseviov tweet mediaAmbassador Jonatan Vseviov tweet media
English
0
6
44
8.9K
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
I am thrilled to be on stage and talk at @Disobey_fi Security Theater stage at Saturday 7pm about my most recent findings related to exploiting vulnerabilities in macOS Calendar. This will be a continuation of my last year's presentation. #InfoSec #Apple #disobey2024
Mikko Kenttälä tweet media
English
2
2
23
1.8K
Ron Masas
Ron Masas@RonMasas·
I configured my app to be the default program for opening .db files. Then, I used osascript to open TCC.db. macOS treated this action as though the user had directly opened the file, thereby granting my app read and write access to it.
Ron Masas tweet media
English
2
0
10
870
Ron Masas
Ron Masas@RonMasas·
In 2021, I reported my first user TCC bypass, CVE-2021-30946. Here is what I found. 🧵 [1/3]
Ron Masas tweet media
English
1
3
16
2.7K
Mikko Kenttälä retweetledi
Boris Larin
Boris Larin@oct0xor·
Thanks to marcan (@marcan/111655847458820583" target="_blank" rel="nofollow noopener">social.treehouse.systems/@marcan/111655…) and @zhuowei (x.com/zhuowei/status…) now we know the original purpose for this unknown hardware feature. Its MMIO debug registers for GPU L2 cache. I am really excited that we are very close to solving this mystery!
Boris Larin@oct0xor

We're revealing details of an obscure debugging feature in the Apple A12-A16 SoC’s that bypasses all of the hard-to-hack hardware-based memory protections on new iPhones. Its not used by the firmware and we don't know how the attackers found out about it. securelist.com/operation-tria…

English
8
97
478
110.2K
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
Operation Triangulation research by Kaspersky (@oct0xor @bzvr_ @kucher1n ) mentions that M1 chip also "has this unknown hardware feature". My colleague wondered if M1x gfx-asc behaviour doc from Asahi Linux a is related to the exploited MMIO (mis)feature? github.com/phire/m1n1/blo…
Mikko Kenttälä tweet media
English
1
27
97
20.6K
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
Many times security research is not that visually interesting. However Terminal fuzzing with ansi escape art is somewhat hypnotic. 😵‍💫 ( Radamsa in action) #iTerm
English
1
1
10
682