Marcin Noga

187 posts

Marcin Noga

Marcin Noga

@_Icewall

Security Researcher / Pentester / Malware hunter

Polska شامل ہوئے Ağustos 2013
1.1K فالونگ1.8K فالوورز
Marcin Noga
Marcin Noga@_Icewall·
@yo_yo_yo_jbo @SEKTOR7net @yo_yo_yo_jbo That was my first idea. But unfortunately AsusCertService.exe contains UAC manifest requiring this exe to be run with admin privilege's. So, trying to spawn this exec as a suspended process and then inject arb code won't work.
Marcin Noga tweet media
English
1
0
1
35
Marcin Noga
Marcin Noga@_Icewall·
@Void_Sec I guess so, that's why I mentioned the timeline in the blog post . On pasted screenshots I only mention about mem leak primitive, but in general I wanted to signal that after 24H2 the exploit won't work.
Marcin Noga tweet mediaMarcin Noga tweet media
English
1
0
0
250
Paolo Stagno (VoidSec)
Paolo Stagno (VoidSec)@Void_Sec·
@_Icewall Question, isn't the PreviousMode primitive unusable on latest 24H2 where VBS/HVCI are in use?
English
1
0
1
286
Marcin Noga ری ٹویٹ کیا
Aleks
Aleks@FuzzyAleks·
The biggest takeaway from this talk is that macOS font renderer ALMOST never invokes the interpreter. If you were fuzzing TTF bytecode without paying attention, it was probably not hitting the interpreter at all. I'll post slides shortly with other interesting details. #OBTS
Mussy@Mu55sy

📜 Starting Day 2 Talks of #OBTS with a dive into the unexpected: “Triangulating TrueType Fonts On macOS: Reconstructing CVE-2023-41990” by Aleksandar Nikolic (@FuzzyAleks). Who knew a simple PDF and the Fonts could be transformed into a digital weapon? In this talk, Aleksandar unravels the mystery behind a hidden vulnerability in Apple’s font rendering code, originally linked to Operation Triangulation. Like navigating ancient paths of Kinihapai, we’ll explore some of the oldest code running on the latest macOS and iOS, uncovering insights that could reshape how we detect and defend against such exploits. OBTS kicks off strong—ready to see how deep this rabbit hole goes? 🌊📄 #AppleSecurity #macOS #ReverseEngineering

English
0
8
47
8.5K
Marcin Noga
Marcin Noga@_Icewall·
@carste1n I have recently "built" for myself that thing : GMK87 + Brown Gaterons 3 Pro + Cherry profile PBT Dragon Ball keycaps
Marcin Noga tweet media
English
1
0
1
188
Michal Melewski
Michal Melewski@carste1n·
Finishing another project
Michal Melewski tweet media
English
3
0
7
1.1K
Marcin Noga ری ٹویٹ کیا
Aleks
Aleks@FuzzyAleks·
Teammates have published an overview of five years worth of router security research which has resulted in hundreds of vulnerabilities discovered in routers from more than a dozen different companies.
Cisco Talos Intelligence Group@TalosSecurity

Since the #VPNFilter malware several years ago, our vulnerability research team has looked into several popular wireless routers used in homes and small businesses. Now, we have a rundown of all the vulnerabilities we discovered as part of this research cs.co/6018PwImO

English
0
13
24
8.3K
Marcin Noga ری ٹویٹ کیا
Gynvael Coldwind
Gynvael Coldwind@gynvael·
On Friday I'll be doing my "PCI Express To Hell" talk: youtube.com/watch?v=fE0fnG… If you're building your own PCs you should check it out! Last year I reworked my whole computer setup and learned a lot about PCIE. Don't make the same mistakes I did ;) Plz RT for range :)
YouTube video
YouTube
English
0
31
101
33.8K
Pedro Ribeiro
Pedro Ribeiro@pedrib1337·
What do you use to patch instructions in a binary? Both IDA and Ghidra work, but are very clunky
English
24
1
24
17.9K
Marcin Noga ری ٹویٹ کیا
Cisco Talos Intelligence Group
Cisco Talos Intelligence Group@TalosSecurity·
Our vulnerability research team discovered 12 memory corruption vulnerabilities in MSRPC on #Apple macOS and #VMWare vCenter. We have a deep dive into how an attacker could exploit these vulnerabilities and what it says about the use of forked codebases cs.co/6012P3wLq
Cisco Talos Intelligence Group tweet media
English
0
9
21
7.9K
Maciej Blatkiewicz
Maciej Blatkiewicz@maciej_je·
Gdzie warto zjeść w Austin w Teksasie? 🇺🇸
Polski
3
0
12
9.1K
Marcin Noga ری ٹویٹ کیا
Hardik Shah
Hardik Shah@hardik05·
Ok, I am looking out for security researcher role. If you can help, please DM. RT, like and recommendations are much appreciated. Here is My Linkedin profile, which will give you more details: linkedin.com/in/hardik05/
English
1
21
49
21.1K
Marcin Noga ری ٹویٹ کیا
Aleks
Aleks@FuzzyAleks·
Remember these? Original Lytro! Lightfield cameras of the future! I grabbed a few off eBay some time ago and took a peek at the firmware. Found secret unlock that enables full remote control of all camera features. Full writeup here: github.com/ea/lytro_unlock
Aleks tweet media
English
5
58
372
37.7K