Max

10.5K posts

Max

Max

@_mxms

rpisec

Cascadia Katılım Aralık 2010
406 Takip Edilen2.4K Takipçiler
Max
Max@_mxms·
@tekknolagi A child can attach to its parent if the parent calls ptrace(PTRACE_TRACEME, ...) or you modify yama_scope; whether or not gdb will be able to use the tty properly, I don’t know :p
English
1
0
1
0
max.rss
max.rss@tekknolagi·
Yeah this doesn't make any sense, thinking about it. How could a child gdb its parent process in the same tty? I want this kind of thing to exist, though... Wonder if I could somehow get the gdb process to own its parent
English
1
0
0
0
max.rss
max.rss@tekknolagi·
I want to write a function in C that attaches GDB to the current process. I wrote something stupid using getpid() and system(), but when GDB eventually attaches it's stuck forever in waitpid(). I haven't gone too far into OS docs yet but has anyone else built something like this?
English
2
2
2
0
Max retweetledi
Winnona 💾
Winnona 💾@__winn·
These, combined with recent @WIRED reporting on Chinese espionage campaign Operation Skeleton Key targeting the Taiwan Semiconductor Industry (wired.com/story/chinese-…), suggests possibility of an explosion of new homegrown semiconductor companies in the mainland.
English
0
5
8
0
Max retweetledi
yrp
yrp@yrp604·
The second annual infosec fat bear bracket is here. Let’s gamble on some fat bears for charity. Brackets due ASAP. dpaste.de/OZ1U
English
8
4
11
0
Jeremy Blackthorne
Jeremy Blackthorne@0xJeremy·
Text-based IDA Pro. It all works, disassembler, decompiler, remote debugging... My tab and alt keys are getting a workout.
Jeremy Blackthorne tweet mediaJeremy Blackthorne tweet mediaJeremy Blackthorne tweet mediaJeremy Blackthorne tweet media
English
3
3
19
0
Max retweetledi
Justin Campbell
Justin Campbell@metr0·
It's not obvious from the advisory, but the same code runs in RDP client. The issues have been patched in both. This would have allowed a malicious server to compromise a client without any alerting behavior, or a MitM attack with a warning confirmation.
English
2
8
19
0
Max retweetledi
Justin Campbell
Justin Campbell@metr0·
August Patch Tuesday includes fixes for our internal finds in RDP, including RCE and remote info disclosure, and affecting Win 10 latest. The team successfully built a full exploit chain using some of these, so it's likely someone else will as well. Patch and enable NLA.
Microsoft Security Response Center@msftsecresponse

August 2019 Security Update includes fixes for wormable RCE vulnerabilities in Remote Desktop Services (RDS), affecting all in-support versions of Windows. These should be patched quickly. For more information, see msrc-blog.microsoft.com/2019/08/13/pat…

English
1
53
89
0
Max
Max@_mxms·
Did anyone find / exploit the serialization bugs in TelOoOgram during DEF CON CTF?
English
0
0
2
0
Max retweetledi
Justin Campbell
Justin Campbell@metr0·
We've built tools for fuzzing based on emulation of a process snapshot captured via minidump. We're considering open sourcing the tool, and I'm curious about interest level from the rest of the world. (1/3)
English
11
30
167
0
Max
Max@_mxms·
@RolfRolles @aaronportnoy Last year RPISEC was at the RPI club fair, and a person of color came to our table and saw the book, and asked the same thing. I’m incredibly happy they asked instead of assuming
English
0
1
5
0
Aaron Portnoy
Aaron Portnoy@aaronportnoy·
Awkward: having a guest peruse your collection of books only to ask “Why do you have a book called People of Color GTFO”? ...and having to explain PoC means proof of concept in our field
English
7
7
47
0
Max retweetledi
Real World CTF
Real World CTF@RealWorldCTF·
#RealWorldCTF2018 RPISEC has successfully pwned the Safari browser and spawned a calculator on the victim host at their first attampt during the demostration!
Real World CTF tweet mediaReal World CTF tweet mediaReal World CTF tweet media
English
0
13
70
0
Max retweetledi
Gabby Roncone 🇺🇦 🇵🇸
Gabby Roncone 🇺🇦 🇵🇸@gabby_roncone·
After Trump was elected, I felt unsafe. I thought that electing a man as president who has assaulted women would normalize that behavior, make assault seem inconsequential to a perpetrator. Right now, I feel worse. It’s normalized, all right.
English
1
2
10
0
Max
Max@_mxms·
So what’re we supposed to be doing about the ongoing calls from numbers in our area code? It’s old...
English
3
1
2
0