Erye Hernandez

307 posts

Erye Hernandez

Erye Hernandez

@eryeh

Security Researcher, @inicmu alum, gamer, snowboarder, weekend baker, PPP member

Katılım Mart 2009
446 Takip Edilen1.1K Takipçiler
Erye Hernandez retweetledi
tylerni7
tylerni7@tylerni7·
Will post more later but: please check out @theori_io's landing page for AIxCC! We've got source code, agent traces, and blog posts to understand the system we built! theori-io.github.io/aixcc-public/
English
2
34
114
12K
Erye Hernandez retweetledi
Maple Mallard Magistrates
Maple Mallard Magistrates@mmm_ctf_team·
@PlaidCTF, @theori_io (The Duck), and @maplebaconctf are joining forces to play DEFCON as Maple Mallard Magistrates. Some PPP members also play on The Duck & Maple Bacon, so this allows all of us to keep playing on the same team. See you all at DEFCON finals!
English
2
27
77
0
Erye Hernandez retweetledi
PlaidCTF
PlaidCTF@PlaidCTF·
PlaidCTF is proud to announce visionary innovation and the actualization of experience in the hacking space. We’re moving beyond the ordinary to usher in a new paradigm of pwning. Welcome to the future. Welcome to Plaidiverse. Join us on April 8 at plaidctf.com!
PlaidCTF tweet media
English
2
29
155
0
Erye Hernandez retweetledi
David Brumley
David Brumley@thedavidbrumley·
😀 I am starting a fundraise for @picoctf. PicoCTF is free to everyone, and costs about $500k a year (🙀) to run. If you've had a positive experience with pico, please reply or DM. I'll use it in my fundraise pitch. Pls RT for awareness. #ctf #hacking
English
29
253
555
0
Erye Hernandez retweetledi
Marc-Etienne M.Léveillé
Marc-Etienne M.Léveillé@marc_etienne_·
The exploit for Safari is quite complex and massive. I really wanted to understand exactly what the vulnerability was and how it was mitigated, so I dived into the world of browser exploits for a few days and tried to explain how leaking object addresses was possible.
ESET Research@ESETresearch

#ESETresearch uncovers new Mac malware DazzleSpy, delivered using watering hole on a pro-democracy Hong Kong radio station website. Payload was launched as root without user interaction, using exploits for Safari and macOS. @marc_etienne_ @cherepanov74 welivesecurity.com/2022/01/25/wat… 1/7

English
2
47
139
0
Erye Hernandez retweetledi
Objective-See Foundation
Objective-See Foundation@objective_see·
Google uncovered a sophisticated attack that leveraged both iOS & macOS exploits (n-/0-days) to infect Apple users! 👀 Interested in a triage of the macOS implant (named OSX.CDDS), including: ▫️ Installation ▫️ Persistence ▫️ Capabilities 📝 Have a read: objective-see.com/blog/blog_0x69…
English
1
86
176
0
Erye Hernandez retweetledi
Lorenzo Franceschi-Bicchierai
New: In August Google caught hackers using an old Mac exploit together with a zero-day that was published by a research group at a Chinese cybersecurity conference in April. The hackers were targeting Hong Kong users. vice.com/en/article/93b…
English
2
45
109
0
Erye Hernandez retweetledi
Shane Huntley
Shane Huntley@ShaneHuntley·
More technical details from @eryeh and the team on last months exploit and the associated campaign. blog.google/threat-analysi… TAG discovered watering hole attacks targeting visitors to Hong Kong websites for a media outlet and a prominent pro-democracy labor and political group.
Shane Huntley@ShaneHuntley

0day privilege escalation for macOS Catalina discovered in the wild by @eryeh support.apple.com/en-us/HT212825 We saw this used in conjunction with a N-day remote code execution targeting webkit. Thanks to Apple for getting patch out so quickly.

English
2
20
50
0
Erye Hernandez
Erye Hernandez@eryeh·
Glad to be able to share some additional details on the campaign leveraging the macOS privesc (CVE-2021-30869) to install a new macOS backdoor blog.google/threat-analysi…
English
3
87
212
0
Erye Hernandez retweetledi
Shane Huntley
Shane Huntley@ShaneHuntley·
0day privilege escalation for macOS Catalina discovered in the wild by @eryeh support.apple.com/en-us/HT212825 We saw this used in conjunction with a N-day remote code execution targeting webkit. Thanks to Apple for getting patch out so quickly.
English
5
53
118
0
Erye Hernandez retweetledi
Overflow
Overflow@oooverflow·
After an EPIC battle for @defcon CTF, with MULTIPLE lead changes throughout 32 hours of competition, A*0*E REMAINS VICTORIOUS  👑 PPP takes second place, behind by two points
Overflow tweet media
English
1
59
178
0
Erye Hernandez retweetledi
Shane Huntley
Shane Huntley@ShaneHuntley·
We disabled 210 channels on YouTube when we discovered channels in this network behaved in a coordinated manner while uploading videos related to the ongoing protests in Hong Kong. blog.google/outreach-initi…
English
48
326
675
0