Shoutout to Mole, our @binary.ninja plugin that made these findings possible. Mole finds interesting execution paths in binaries by performing backward slicing on variables in MLIL SSA form, enabling static taint analysis. Mole: github.com/cyber-defenc... Advisory: certvde.com/en/advisorie...
MBS: Several security vulnerabilities in the UGW web GUI
certvde.com
finally seen some real good use of ai www.youtube.com/watch?v=z3pV...
VibeOS - Fully Hallucinated Operating System
YouTube video by Zev.3R
youtube.com
Are you concerned about your privacy and the power abuse by American tech companies? This website helps you switch to European and open-source alternatives. switch-to.eu/en/
Switch-to.eu - EU alternatives to global services
A guide to help you switch from non-EU to EU-based digital services and products.
switch-to.eu
Nothing new, but the current political situation in the US just makes it way more of an issue!
Microsoft hinterlegt den Schlüssel der Festplattenverschlüsselung standardmäßig im Online-Account von Kunden. Dort ist er mit richterlichem Beschluss abrufbar. #Verschlüsselung
In Minnesota wurden Aktivistinnen festgenommen, die Proteste gegen ICE organisiert haben sollen. Von einer hat das Weiße Haus ein Foto manipulieren lassen. #Bildbearbeitung
Weißes Haus verbreitet KI-manipulierte Aufnahme von festgenommener Aktivistin
In Minnesota wurden Aktivistinnen festgenommen, die Proteste gegen ICE organisiert haben sollen. Von einer hat das Weiße Haus ein Foto manipulieren lassen.
heise.de
🧵 Thread on beautiful data centers: MareNostrum 4 (Barcelona SCC): Often called "the most beautiful data center in the world," this facility is housed inside the Torre Girona Chapel, a deconsecrated 19th-century church. When fully installed, it will have a peak performance of 13.9 Petaflops.
First two unauthenticated RCE CVEs published - Discovered with the help of our #Binja plugin #Mole! 🔗 Advisory: certvde.com/en/advisorie... @ruheabteil.ch 🔗 Mole: github.com/cyber-defenc... More vulnerabilities have been reported - stay tuned for upcoming advisories.
WAGO: Vulnerabilities in WAGO Industrial-Managed Switches
certvde.com
🧯The security community is pushing back against new claims that 80% of #ransomware attacks are AI-driven, a figure from a recent MIT-linked report now drawing widespread criticism. → socket.dev/blog/securit...
Security Community Slams MIT-linked Report Claiming AI Power...
Experts push back on new claims about AI-driven ransomware, warning that hype and sponsored research are distorting how the threat is understood.
socket.dev
Earlier that year @damianpfammatter.bsky.social and me had time to play with domotics equipment. Finally the patches and advisories were released: www.certvde.com/en/advisorie...
Sauter: Multiple vulnerabilities in SAUTER modulo 6
certvde.com
Thanks for the excellent writeup @intel471.bsky.social www.intel471.com/blog/the-phr...
The Phrack leak: Examining an APT’s workstation
In August 2025, two anonymous researchers released 9 GB of data from a workstation of a likely advanced persistent threat (APT) group. Here’s an analysis of the data by Intel 471’s Cyber Geopolitical ...
intel471.com
My DEFCON talk "We are currently clean on OPSEC" now has over 30k views on YouTube, so now more people watched my talk than attended DEFCON itself. If you haven't seen it, please do! The Trump admin's incompetence is mindbogglingly BONKERS www.youtube.com/watch?v=KFYy...
"We are currently clean on OPSEC": The Signalgate Saga (DEFCON 33)
YouTube video by Micah Lee
youtube.com
Check out our latest blog post on modeling complex control flow with function-level basic block analysis in Binary Ninja 5.1. From DSPs to Brain***k, this update makes it easier to develop plugins for tricky architectures. binary.ninja/2025/08/12/f...
During my #BHUSA talk I've released many ETW research tools, of which the most notable is BamboozlEDR. This tool allows you to inject events into ETW, allowing you to generate fake alerts and blind EDRs. github.com/olafhartong/... Slides available here: github.com/olafhartong/...
GitHub - olafhartong/BamboozlEDR: A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.
A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes. - olafhartong/BamboozlEDR
github.com
cut my heap into pieces, this is my crash report: allocation, no alignment don't give a fuck if it faults on assignment this is fatal abort()
Linda McMahon, Secretary of Education, sent Harvard a letter. They graded it. Bwahahaha.
Heard of #ContextJail? It's a nasty new technique: puts target thread into ⓪ deadloop, for as long as you can afford. Requires THREAD_GET_CONTEXT right. The gist? Just spam NtGetContextThread(tgt).😸 Target will be jailed, running nt!PspGetSetContextSpecialApc 🔁. Src & binary in [ALT]. Usecases: ⤵️
The craziest file I made & visualized recently was combining the Doom PDF with a DOS & Windows (EXE & PE) polyglot. It runs Doom on OS from 1993 until today, and Chrome-based PDF viewers! You can make it an HTML/JS polyglot too to run on most browsers! (3/3)