Ryan Hanson

2.7K posts

Ryan Hanson banner
Ryan Hanson

Ryan Hanson

@ryHanson

Security Researcher. Breaking things at @Atredis

0x8B5F9F48F53154B7 เข้าร่วม Aralık 2008
875 กำลังติดตาม6.8K ผู้ติดตาม
ทวีตที่ปักหมุด
Ryan Hanson
Ryan Hanson@ryHanson·
My Office RCE, CVE-2017-0199, won the Pwnie Award for Best Client-Side Bug! I'm speechless, thank you @PwnieAwards! Photo Credit: @dalmoz_
Ryan Hanson tweet media
English
7
16
89
0
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
We decided to revisit an old research problem with some new LLM powered tooling. Check out our latest blog post to see how we approached this research, and the new Java deserialization gadget chains it discovered in just two days! buff.ly/CeAQZ2B
English
3
34
100
10K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
Let's Hack Something Cute! A Reverse Engineering Journey into the Drawbot with Jessie buff.ly/yEWSICJ
English
0
5
8
2.4K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
Check out our latest blog from Matt Burch (@emptynebuli) detailing new supplemental findings from his DefCon32 talk Where's the Money: Defeating ATM Disk Encryption: buff.ly/lBtjQe7
English
0
3
7
1.4K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
We recently identified a number of privilege escalation vulnerabilities in Lenovo Vantage on Windows; check out our latest blog for a technical deep dive buff.ly/eKMcZLg
English
1
16
41
3.9K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
We're excited to announce that Atredis is 100% employee owned and operated. Here's Shawn with a post about how we got there. bit.ly/4d85Icq
English
0
14
54
13.7K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
Here's Chris' slides from his REcon talk on the DA1469x BootROM! bit.ly/3ztw8qe
English
0
9
13
2.4K
Ryan Hanson รีทวีตแล้ว
mdowd
mdowd@mdowd·
Hey, for anyone who wanted to see this slide deck, it was a keynote about the 0day market, but it commented on public research vs saleable products. I have put it here: github.com/mdowd79/presen… // cc @chompie1337 @bsdaemon
mdowd@mdowd

@chompie1337 Yeah. I touched on this in a talk I gave at blue hat last year. It isn't publicly available though

English
10
128
406
101.9K
Ryan Hanson รีทวีตแล้ว
_ZN4DionC1Ev
_ZN4DionC1Ev@justdionysus·
Well, here's a goofy reverse engineering challenge I started a year or two ago and "polished" up last night (I'm sorry it's JavaScript but that's part of the point): gist.githubusercontent.com/justdionysus/d… Please solve it and let me know if it's dumb or boring.
English
2
2
6
3.6K
Ryan Hanson
Ryan Hanson@ryHanson·
@MarcOverIP @HackingLZ Damn I had no idea, that’s crazy. Car values have been all over the place the past few years
English
0
0
2
50
Marc Smeets
Marc Smeets@MarcOverIP·
@ryHanson @HackingLZ Im not sure you are aware how expensive cars are here in The Netherlands 😂 New TTS with basic options: $400k. Cheapest 991TTS I can find costs $130k is 10+ yrs old and has done more than 100k KM.
English
2
0
2
98
Justin Elze
Justin Elze@HackingLZ·
Inching closer to race season and I’m still way behind
English
4
0
15
3.7K
Ryan Hanson
Ryan Hanson@ryHanson·
@MarcOverIP @HackingLZ Driving a fast car slow can still be fun, but I totally get what you mean. Mountain drives are amazing, even if you don’t go more than 5-10mph over the limit. 992TTS is too much for sure, but $120-150k for used 991TTS isn’t too bad
English
1
0
0
86
Marc Smeets
Marc Smeets@MarcOverIP·
@ryHanson @HackingLZ I dont know. For a daily its just too much I would say. That chassis and engine is so good you cant really have fun without reaching extremely illegal speeds. Now for a track thats different, but with still costing €250k at least, its too expensive as track car.
English
1
0
0
94
Justin Elze
Justin Elze@HackingLZ·
@MarcOverIP 911 is on my bucket list. I’m on a similar two year plan of getting something interesting GTR is up there as well.
English
1
0
2
229
Ryan Hanson รีทวีตแล้ว
Mickey Jin
Mickey Jin@patch1t·
So, if your debugger crashed in the API “task_set_exception_ports” or “thread_set_state”, try to use the boot args: sudo nvram boot-args="thid_should_crash=0 tss_should_crash=0"
Mickey Jin tweet media
English
4
10
61
20.5K
Ryan Hanson รีทวีตแล้ว
Atredis Partners
Atredis Partners@Atredis·
We're excited to see our ChromeOS paper go public! 🎉🥳 We did a deep comparative analysis of ChromeOS' security posture vs MacOS and Windows, with full autonomy to make our own independent conclusions. Paper: bit.ly/43rVzDz ChromeOS blog: bit.ly/3INZ1i7
English
1
26
33
7.6K
Ryan Hanson
Ryan Hanson@ryHanson·
Of course @elonmusk shut off access to superior 3rd party Twitter clients like @tweetbot… How else was he going to force us to read his shitposts? (Yes, I know, Twitter was likely losing money from the ad-free experience offered by 3rd party clients)
Ryan Hanson tweet media
English
0
0
1
3.3K
Ryan Hanson
Ryan Hanson@ryHanson·
I have a feeling the “Disgruntled (Ex-)Employees” security threat is about to become very real for Twitter
English
2
4
17
0
Ryan Hanson รีทวีตแล้ว
_ZN4DionC1Ev
_ZN4DionC1Ev@justdionysus·
Ever have too many bugs? Me neither, but Jordan does. It happens so often he developed a bunch of tools to triage and analyze his pile of crashes using symbolic execution. Also, he’s got a training so you can too — check it out.
Atredis Partners@Atredis

Here's @jordan9001 with some deep thoughts on symbolic execution, check out the great symbex training he's put together as well! bit.ly/3UdLfcy

English
0
5
8
0
Ryan Hanson รีทวีตแล้ว
Justin Kennedy
Justin Kennedy@jstnkndy·
For those of you that include source code in your reports written in Word, what are you tricks for getting the code blocks to look good and retain proper syntax highlighting? Can you share screenshots of what you consider "looks good" if you respond?
English
8
3
8
0
Ryan Hanson รีทวีตแล้ว
Justin Kennedy
Justin Kennedy@jstnkndy·
OH
Justin Kennedy tweet media
2
2
14
0