Yuriy Bulygin

2.9K posts

Yuriy Bulygin banner
Yuriy Bulygin

Yuriy Bulygin

@c7zero

@eclypsium, @CHIPSEC. Former @intel, @IntelSecurity, @McAfee

Katılım Nisan 2010
1.1K Takip Edilen4K Takipçiler
Yuriy Bulygin retweetledi
David Senra
David Senra@davidsenra·
"Peter Thiel says, you have to be contrarian but right to be an entrepreneur. So, you have to be comfortable looking stupid for a long time. When I was calling those banks and saying, "Hey, we're a crypto company. We want to do this," they would hang up on me. Or I'd go pitch the 30th venture investor and get a no. Or the thousandth employee we tried to hire or whatever. We're willing to be misunderstood for a long time. And then you slowly start to have these breakthroughs. If you look at Uber, they were fighting for a decade to just be like, yeah, it's actually better and safer than a cab — and the entrenched interests were fighting them. Or Airbnb with the hotels. Self-driving cars. Everything that's truly innovative and breakthrough is going to upset an entrenched incumbent, eventually intersect with the government, and just piss off some segment of the population who are like... "How dare you question the status quo." — @brian_armstrong
David Senra@davidsenra

My conversation with @brian_armstrong, co-founder and CEO of @coinbase and @newlimit. 0:00 Crypto Power in DC 0:25 Market Structure Clarity 1:39 SEC Lawfare Origins 5:49 Suing the Regulator 9:09 Winning the SEC Case 11:11 Long Term Founder Mindset 12:20 Autism and Focus 15:04 Mission First Company Culture 21:10 Rebuilding From Scratch 23:05 Follow Your Nose 25:20 From Side Hustles to Coinbase 30:07 Argentina and Bitcoin Spark 32:33 Airbnb to Coinbase Nights 36:25 Finding a Co-founder 37:35 YC Without a Co-founder 38:41 Finding the Perfect Partner 40:18 Losing Money Per Trade 41:23 Support Backlog Chaos 43:29 Banking and Compliance Gauntlet 47:47 Raising Fast to Survive 51:36 Mission Values and Inspiration 57:54 Hiring for Spikes 1:02:14 Centralized vs Decentralized 1:05:51 From Bitcoin Wedge to Super App 1:07:59 How Coinbase Runs Today 1:11:00 Decision Speed and Risk 1:12:43 Internal Venture Bets 1:14:46 Funding Ideas Internally 1:15:18 Coinbase Marketing Experiments 1:16:56 Internet Native Shareholder Updates 1:21:58 Media Diet and Going Direct 1:26:47 Building a New Industry 1:31:44 Starting New Limit Longevity 1:36:17 CEO Stress and Routines 1:40:59 AI Agents at Coinbase 1:44:35 Base App Explained 1:46:47 Other Bets and SEZs 1:49:21 Closing Thanks Includes paid partnerships.

English
36
93
632
138K
Yuriy Bulygin retweetledi
Paul Asadoorian @paulasadoorian@infosec.exchange
Paul Asadoorian @[email protected]@securityweekly·
The BadCAM research has been published! Why is this significant? Attackers can now weaponize connected USB peripherals that run Linux and do not validate firmware signatures.
Paul Asadoorian @paulasadoorian@infosec.exchange tweet media
English
1
10
21
3.8K
Yuriy Bulygin retweetledi
Richard Johnson
Richard Johnson@richinseattle·
If you use llamafile, llama.cpp, llama-cpp-python, Oobabooga, LMStudio or any other software that exposes llama.cpp grammar sampling, I found a few remotely exploitable bugs triggered through a single web request that got patched today. More to come from my work at @Eclypsium
Richard Johnson tweet media
English
0
35
109
19.6K
Mickey
Mickey@HackingThings·
Can you spot where the magic smoke was stored? 🪄💨
Mickey tweet media
English
1
1
12
1.7K
Yuriy Bulygin retweetledi
Andy Greenberg (@agreenberg at the other places)
Hundreds of models of Gigabyte motherboards, used in gaming and other high-performance computers, have a backdoor in their firmware that invisibly downloads code to the machine at startup—and does so insecurely, leaving the feature open to abuse. wired.com/story/gigabyte…
English
14
232
465
124.1K
Yuriy Bulygin retweetledi
Eclypsium
Eclypsium@eclypsium·
Eclypsium analysis found a backdoor in Gigabyte systems implementing intentional functionality during system startup. Due to significant #supplychainrisk, we're disclosing this info & defensive strategies on an accelerated timeline >> bit.ly/3N6axIA #supplychainsecurity
English
4
42
80
40.4K
Yuriy Bulygin
Yuriy Bulygin@c7zero·
ShadowHammer campaign all over again but with MSI now
English
0
1
4
1.4K
Yuriy Bulygin retweetledi
Greg Linares (Laughing Mantis)
Greg Linares (Laughing Mantis)@Laughing_Mantis·
Attention anyone having an MSI motherboard or computer. MSI just said they were hacked and attackers might have tried modifying BIOS and software updates. Disable all updates from MSI for the time being pcmag.com/news/msi-confi…
English
11
140
284
81.2K
Yuriy Bulygin retweetledi
hasherezade
hasherezade@hasherezade·
New release: #TinyTracer v2.3 : github.com/hasherezade/ti… - with improved syscalls tracing support - now syscalls are automatically mapped to corresponding functions names
hasherezade tweet media
English
7
160
487
74K
Yuriy Bulygin retweetledi
Eclypsium
Eclypsium@eclypsium·
It's no surprise that supply chain security has become a top national priority. In its recently-published SP 1800-34, NIST hones in on one of the most important, challenging aspects of #supplychainsecurity — devices. Here, we highlight the key takeaways. bit.ly/3J5NRFj
English
0
5
6
966
Yuriy Bulygin retweetledi
Flashback Team
Flashback Team@FlashbackPwn·
We finally released our research about an 0day RCE we found on the Western Digital PR4100 NAS device. Check it out on our NEW WEBSITE: flashback.sh/blog/weekend-d…
English
0
49
120
29K
Yuriy Bulygin
Yuriy Bulygin@c7zero·
New Year wish is for Russia to fuck off
English
0
0
8
917
Yuriy Bulygin retweetledi
Eclypsium
Eclypsium@eclypsium·
Our team has discovered 3 vulnerabilities in American Megatrends, Inc. MegaRAC Baseboard Management Controller software.These vulnerabilities range in severity & include remote code execution & unauthorized device access w/superuser permissions.More here! bit.ly/3BytkXd
Eclypsium tweet media
English
0
3
13
0