Cristofaro Mune

2.9K posts

Cristofaro Mune

Cristofaro Mune

@pulsoid

In between Physics & Computing. Fault Injection, TEEs, IoT & anything else challenging my curiosity. Founder at Raelize (@raelizecom)

Science.Art.Life.Universe Katılım Eylül 2009
784 Takip Edilen2K Takipçiler
Cristofaro Mune retweetledi
Shift
Shift@Shiftreduce·
We live in interesting times. Last month Linux patched a core uaf in the epoll subsystem, we rarely see these kind of bugs. As i like these kind of bugs, i wrote a few words about it here: guysrd.github.io
English
3
47
163
18K
Cristofaro Mune
Cristofaro Mune@pulsoid·
@andersonc0d3 @offensive_con @Binary_Gecko Dear Anderson, No, indeed, I was not aware. Thank you so much! It's been an interesting read and I am happy the topic has been resonating with both of us and I thank you for letting me know. 🙏 Happy to talk about it anytime :)
English
0
0
1
61
Cristofaro Mune
Cristofaro Mune@pulsoid·
Back from an amazing @offensive_con 2026! It's been an honor to be on stage and present our Google WiFi Pro/QSEE research. Thanks everyone at @Binary_Gecko for making it awesome.
Cristofaro Mune tweet media
English
1
1
21
1.3K
Cristofaro Mune retweetledi
Raelize
Raelize@raelizecom·
We let Claude reproduce our EM fault injection attack on Google's TV Streamer 4K — from restricted adb shell to root — using only our presentation slides and the tool manuals as input. Time to root in <15 minutes. 🤯 Full write-up 👇 raelize.com/blog/ai-fi-rep…
Raelize tweet media
English
0
25
58
4.3K
Cristofaro Mune retweetledi
Raelize
Raelize@raelizecom·
One EM glitch forces setresuid to hand the shell user root on Google's TV Streamer 4K. Full breakdown from our @hardwear_io Amsterdam talk last year: raelize.com/blog/setresuid…
Raelize tweet media
English
0
12
40
2.2K
Cristofaro Mune retweetledi
offensivecon
offensivecon@offensive_con·
Exploiting QSEE Vulnerabilities In Google's Wifi Pro by @pulsoid
offensivecon tweet media
English
0
8
43
2.8K
Cristofaro Mune retweetledi
offensivecon
offensivecon@offensive_con·
Tile-Based Deferred Rooting: When Your GPU Starts Rendering To Kernel Code Space! by @1ce0ear and @jmartijnb
offensivecon tweet media
English
0
7
46
8K
Cristofaro Mune retweetledi
Raelize
Raelize@raelizecom·
We've seen numerous examples where LLMs are doing the heavy lifting for software vulnerability research. Not too many examples (yet) for hardware vulnerabilities. For our latest blog post we gave @claudeai full control over our hardware glitching setup: raelize.com/blog/ai-fi-giv…
GIF
English
3
19
43
4.1K
Cristofaro Mune retweetledi
sergey bratus
sergey bratus@sergeybratus·
Twelfth LangSec IEEE Security & Privacy workshop announces its preliminary agenda langsec.org/spw26/abstract… . Join us on May 21 for two keynotes on formal methods reaching broad industry practice, a panel on AI & LangSec, and talks. Work-in-progress reports and more TBA soon.
English
0
8
26
8.6K
Cristofaro Mune retweetledi
diaul@infosec.exchange
[email protected]@daviddiaul·
I’m #hiring an individual contributor for a fully remote, global role at the intersection of vulnerability research, exploit development, and ML/AI — with a focus on fine-tuning open-weight #LLMs. 🧠 I’m not looking for an “LLM whisperer” or an “LLM pilot.” 🚫 I’m looking for someone who deeply understands post-training, data, evaluation, and how to make models reliable in real-world environments. 🔐 The application link is in the first comment. 🌍 #Hiring #LLM #AI #ML #FineTuning #CyberSecurity #llmwhisperer #llmpilot
English
2
20
70
25.7K
Cristofaro Mune retweetledi
Scott Bauer
Scott Bauer@ScottyBauer1·
I have a job opening on my team. If you're interested in incident response & software security across a wide range of industries (Laptops, Auto, Mobile, Datacenter) while working with very talented people please apply. DMs are open for questions*. careers.qualcomm.com/careers/job/44…
English
9
29
112
13.8K
Cristofaro Mune retweetledi
Halvar Flake
Halvar Flake@halvarflake·
I finally managed to write up some memories about my recently deceased and very dear friend, Felix 'Fx' Lindner. #Halvar" target="_blank" rel="nofollow noopener">phenoelit.de/fx.html#Halvar
English
3
29
139
15.5K
Cristofaro Mune
Cristofaro Mune@pulsoid·
And #MobSec, a new @raelizecom training is born. Explore how, starting from a single vulnerability, Android FBE can be broken. If you are into Android forensics, or if you have ever wondered about the magic spells for accessing encrypted user data.. MobSec is definitely for you.
Raelize@raelizecom

Brute-forcing the PIN of an Android phone can take just minutes when you have the right type of vulnerability. 🎬 asciinema.org/a/LC1wb0JZndZT… During our new MobSec training, you exploit a ROM code vulnerability on a Samsung phone to root Android and fully compromise Samsung's TEE.

English
1
0
5
663