Low hanging fruit maven. Cluster Head. Tweets are my own. linktr.ee/HackingThings

Below the operating system
When you think you have experienced the worst a disclosure process can offer but then @intigriti comes along and surprises you

ALT season 2 starz GIF by Ash vs Evil Dead

249
⏳ CFP DEADLINE: tonight! Got a talk, breakdown, or project you want to share with the community? Don't wait until the final hour. First-time and experienced speakers are equally welcome. Submit your proposal here: cfp.bsidespdx.org/bsidespdx-… #InfoSec #CyberSecurity #CFP
1
2
1
360
You’ve got security research, tooling, findings, or a project you want to share? Submit it to @BSidesPDX 2026: cfp.bsidespdx.org/bsidespdx-… CFP closes Sept 25 — we’re at day-2. I’m looking forward to seeing the cool work and ideas y’all bring to the community. Submit yours now!
1
1
162
I've create an iOS app called Signal Watch Guard that listens for nearby Bluetooth devices and alerts you when one on your watchlist is nearby. Get alerted for nearby smart glasses, Taser devices or any other device you want to add a rule for. apps.apple.com/us/app/signal…
1
5
14
7,781
⏳ CFP DEADLINE: September 25th! Got a talk, breakdown, or project you want to share with the community? Don't wait until the final hour. First-time and experienced speakers are equally welcome. Submit your proposal here: cfp.bsidespdx.org/bsidespdx-… #InfoSec #CyberSecurity #CFP
1
4
4
603
Mickey retweeted
Agents taking over GPUs, BMCs, DPUs in the data centers and we are in for a rough ride…
Neoclouds have limited cybersecurity. Next time agents successfully go rouge, they'll try taking over a neocloud to run more copies. This is bad. Thus: neoclouds should greatly strengthen their cybersecurity and every company with strong cyber models should help with that.
1
2
4
669
Mickey retweeted
My boy @olivier_boschko just published the awesome and massive research on @UnitreeRobotics named #UniBLEed. He and friends showed a novel way to exploit the Unitree G1 via BLE! AGAIN a wormable BLE hack on a Unitree G1, the same class of exploits as @d0tslash and my #UniPwn which was the first exploit on a Humanoid, also via BLE and wormable. But this blog article and reserach goes much deeper, read it now! boschko.ca/g1-ble-rce/
1
9
13
2,367
Mickey retweeted
We published our Mammotion security research. Unauthenticated admin takeover, ~337k users enumerable, fleet, wide device data leaks and account takeover that let an attacker drive someone else’s mower from the official app including camera. Writeup:
github.com/ClankerPwn/Mammot… Research by @n0tsa, @Bin4ryDigit, @d0tslash Mammotion l4wnm0w3r sometimes you have to mow someone else’s lawn.
2
9
13
986
Got an alert while walking the dog, cars drove past us but none were cop cars 🤔
3
3
535
Dishwasher
1
4
753
Mickey retweeted
Chad Everdox appreciation post. Nick ‘Everdox’ Peterson (@nickeverdox) is genuinely one of the most underrated reverse engineers and Windows researchers in the industry. A lot of people know Riot Vanguard. Far fewer know the depth of Windows internals, kernel, anti-debugging, hypervisor and reverse engineering work behind one of the engineers who helped build and advance it. His old blog is an absolute gold mine. Some of this research is more than a decade old and still covers concepts people are learning and rediscovering today. Old but gold: Easy anti-trace with SYSCALL: everdox.blogspot.com/2015/05… Debugger detection with GetProcessIoCounters: everdox.blogspot.com/2013/11… BTF + LBR anti-tracing: everdox.blogspot.com/2013/10… Paged virtual memory as an anti-debug / anti-dumping primitive: everdox.blogspot.com/2013/03… Kernel/user shared page kernel-debugger detection: everdox.blogspot.com/2013/07… RTL_USER_PROCESS_PARAMETERS anti-debugging: everdox.blogspot.com/2013/02… Full archive: everdox.blogspot.com/ Then there is InfinityHook, another Everdox contribution that became a reference point for Windows kernel instrumentation: github.com/everdox/InfinityH… And his own article on revers.engineering: PatchGuard: Detection of Hypervisor Based Introspection [P1] revers.engineering/patchguar… If you are interested in reverse engineering, Windows internals, Windows kernel research, anti-debugging, anti-cheat engineering, hypervisor internals or obscure tricks buried deep inside the OS, his work is invaluable. Also bookmark the wider revers.engineering archive: revers.engineering/ That site is multi-author and contains excellent work from @daaximus , @aidankhoury across reverse engineering, kernel internals, virtualization and EPT. People spend a lot of time chasing the newest research. Sometimes the real gold has been sitting online for 10+ years. #ReverseEngineering #WindowsInternals #Infosec
4
56
439
18,875
BSidesPDX 2026 is back! 🌲👾 Mark your calendar for October 23–24 Portland Here’s your checklist: 🎟️ Tickets: On sale now! 🎙️ CFP: Open until September 25th! 🙋 Volunteers: We need you to help! Details & links below 👇 bsidespdx.org/ #InfoSec #CyberSecurity #Portland
1
4
9
722
Mickey retweeted
A reminder that this is the last week for submissions to CanSecWest, in Vancouver on Sept 30 / Oct 1. We are also adding courses on reverse engineering with LLMs, specifically Ghidra, from Kara Nance, author of the No Starch Ghidra Book. She'll also be presenting her optical drone tracking work. In a similar vein: so you've been asked to set up an agentic vuln discovery and security auditing pipeline? Come learn how to build one in Erlend Oftedal's two-day workshop, which we're just opening registration for. Check out our other technology leading courses and find conference and course registration at secwest.net Keynote speakers: Bruce Schneier and Katie Moussouris. And Sergey Bratus is going to tell us about automated micro-patching. I'm also looking for one more contributor for the panel "Who Guards the Guardians?" on safety classifiers, guardrails, and their effect on security research. That promises to be an interesting discussion. :-) Paper announcements will be showing up on the site as we proceed. Image prompt: calculate geopositioning of CanSecWest 2026 in this image from Vancouver building profile extrapolation and give me a ground level wire-mesh from an overlaid targeting reticle, please
8
15
3,417
Mickey retweeted
I'll be at CanSecWest this year, teaching my Advanced Linux Malware Reverse Engineering with new chapters on MIPS and ARM implants, and updates to Go, Rust, and C++ chapters 🤓
A reminder that this is the last week for submissions to CanSecWest, in Vancouver on Sept 30 / Oct 1. We are also adding courses on reverse engineering with LLMs, specifically Ghidra, from Kara Nance, author of the No Starch Ghidra Book. She'll also be presenting her optical drone tracking work. In a similar vein: so you've been asked to set up an agentic vuln discovery and security auditing pipeline? Come learn how to build one in Erlend Oftedal's two-day workshop, which we're just opening registration for. Check out our other technology leading courses and find conference and course registration at secwest.net Keynote speakers: Bruce Schneier and Katie Moussouris. And Sergey Bratus is going to tell us about automated micro-patching. I'm also looking for one more contributor for the panel "Who Guards the Guardians?" on safety classifiers, guardrails, and their effect on security research. That promises to be an interesting discussion. :-) Paper announcements will be showing up on the site as we proceed. Image prompt: calculate geopositioning of CanSecWest 2026 in this image from Vancouver building profile extrapolation and give me a ground level wire-mesh from an overlaid targeting reticle, please
3
8
955
Want to run an entire Tailscale daemon from memory inside a C2 implant with zero disk artifacts, no kernel drivers, traffic indistinguishable from HTTPS to a CDN, and relay connections from the victim network back through the tailnet. Now you can. Enjoy! netspi.com/blog/technical-bl…
15
197
753
67,641
My dog Rosie was given months to live. Chemo and immunotherapy failed I used chatgpt + computational genomics to design a personalised mRNA cancer vaccine for her tumour. Several of her tumours shrank Today we launch Gamgee (YC S26): personalised mRNA cancer vaccines for dogs
294
662
6,325
547,750
Mickey retweeted
At Long Last! RfCat Release: v3.0.0 github.com/atlas0fd00m/rfcat… Gone are the remnants of Python2, and finally pyside6. Thank you all for your patience. The last few years have been somewhat insane for me. PLEASE test this out (not updating PYPI for a few days) @michaelossmann
1
1
6
346
Mickey retweeted
Today I am releasing the Binary Ninja Diffing plugin. It features Control flow graph, disassembly, LLIL, MLIL and HLIL diffing views. You can Save and restore diffs from the BNDB or json file. Supports porting function names from one binary to the other
9
40
436
18,240
“The hacker manifesto” Laser engraved on a silicon wafer
1
13
835
Fake SPI TPM. Controlled PCRs. defcon.org/html/defcon-34/dc…
2
14
1,565