Aleks
@fuzzyaleks.bsky.social
📤 84
📥 150
📝 50
Attended a darkroom workshop recently. Analog photoshop. Slightly different technique each time to get the desired effect.
4 days ago
0
1
0
Designed slim filters for Fuji GF670 that you can leave on the camera when folded.
https://blog.29b.net/dispatches/gf670_filters/
16 days ago
1
0
0
Sigh, a domain hosting a small website for the last 20 years expired. I've forgotten about it for so long that it actually brought up some fun memories. Cheers to all the folks around it, wherever you are!
2 months ago
0
0
0
Attending USENIX Security for the first timehow do academic conferences work? In Seattle till Sunday.
4 months ago
0
0
0
reposted by
Aleks
Marcus
5 months ago
A Borges story about a guy who gets AI to summarize all the world’s information for him, and then summarize the summary, until the AI has the whole world summarized into a single word. He sits alone at his desk, staring at the word, repeating it endlessly, certain he is experiencing everything
140
6699
2029
reposted by
Aleks
Cisco Talos Intelligence Group
5 months ago
Join us for a deep dive into how Cisco Talos uncovered two critical vulnerabilities in the AsIO3.sys driver powering ASUS Armory Crate:
blog.talosintelligence.com/decrement-by...
0
4
3
reposted by
Aleks
Sy Brand
6 months ago
Building a Debugger is now officially released! It guides you through building a whole native x64 debugger from scratch, dispelling all the magic and teaching you a ton about operating systems as it goes. Even if you don't care about building a debugger, you can read it to your cat.
24
373
83
reposted by
Aleks
Romain Thomas (@rh0main)
6 months ago
[Blog Post] New high-level API in LIEF that allows the creation of DWARF files. Additionally, I present two plugins designed to export program information from Ghidra and BinaryNinja into a DWARF file.
lief.re/blog/2025-05...
(Bonus: DWARF file detailing my reverse engineering work on DroidGuard)
loading . . .
DWARF as a Shared Reverse Engineering Format
This blog post introduces a new API in LIEF to create DWARF files
https://lief.re/blog/2025-05-27-dwarf-editor/
1
21
15
Sebastião Salgado died, most amazing photographer among other things. Go find and watch “Salt of the Earth”
https://youtu.be/aQ-My45meeo?si=hRPjKaG0zmNO9BUs
6 months ago
0
1
0
reposted by
Aleks
Clémentine Maurice
7 months ago
Haven't seen this on Bluesky yet: S&P 2027 will take place in Montreal, Canada!
2
29
20
Collaborative reverse engineering is hard not because the tools aren’t right, but because it’s difficult for you to transfer knowledge and insights gained while reverse engineering. Structs and function names are important but connecting the dots is crucial. How do you do this effectively?
7 months ago
0
0
0
Did you know that you can get archived audio lectures from Internet Archive as podcasts in whatever podcatcher you use? Like
https://archive.org/details/the-real-world-of-technology
7 months ago
0
1
0
Utterly disappointing, not at all what i expected by the title! Doesn’t even acknowledge prior works of Discordians! It’s all about SRE and making complex chaotic systems more resilient to failure. With a bunch of first-hand experience from big corps who have their shit together!
8 months ago
0
1
0
Digital vs film X-ray . Film offers higher resolution and better dynamic range with the same settings, but slightly longer exposure time (and more tedious image acquisition). Comes in handy when it comes to tiny electronics. Images of an Abbott Lingo continuous glucose monitor.
9 months ago
0
2
1
Not funny in the least , smh
9 months ago
0
0
0
reposted by
Aleks
Quarkslab
10 months ago
Unrestrict the restricted mode for USB on iPhone. A first analysis
@citizenlab.ca
#CVE-2025-24200
👉
blog.quarkslab.com/first-analys...
0
16
9
reposted by
Aleks
Carausius
10 months ago
Crazy day at work and I don’t care that I’ve posted this before; I need cheering up. So here’s a mosaic of a rabbit driving a chariot pulled by ducks. Good day to you all.
1
121
37
Almost forgot about this. Found a funny bug in CUPS ecosystem, but we wanted to cut developers some slack after all the drama a couple of months ago
https://blog.talosintelligence.com/small-praise-for-modern-compilers-a-case-of-ubuntu-printing-vulnerability-that-wasnt/
loading . . .
Small praise for modern compilers - A case of Ubuntu printing vulnerability that wasn’t
During an earlier investigation of the macOS printing subsystem, IPP-USB protocol caught our attention. We decided to take a look at how other operating systems handle the same functionality.
https://blog.talosintelligence.com/small-praise-for-modern-compilers-a-case-of-ubuntu-printing-vulnerability-that-wasnt/
10 months ago
0
1
0
I’m RE early boot code of this device. It has a factory testing/debug mode triggered by holding a button combo while powering it on. I see the code, but don’t have an exact memory map to find the correct button sequence! And there's 12 buttons, too much for brute force...
10 months ago
0
1
0
https://youtu.be/A1gxy11d0N0?si=dBt4hjrX5hCG3Y6j
my favorite weather man
11 months ago
0
1
0
Finished Watt’s “Echopraxia” and watched Herzog’s “Theater Of Thought “ in the same day and have a hard time distinguishing which theme about consciousness was covered in which. Recommend both.
11 months ago
0
1
0
I’m a bit of a tall ship nerd and got to see this extraordinary one in Hamburg. Peking is a 4 masted barque. The last of the flying P-liners, immortalized in Irving Johnson’s famed “Around the Cape Horn” film (linked). “The main course sail weights 3 tones when dry. “
youtu.be/gYgl6a-XJ8U?...
11 months ago
0
0
0
Cowboy hat unusual for Hamburg? Clearly you haven’t seen Dennis Hopper in Wim Wenders’ “The American Friend”. Say hi if you see me at
#38C3
!
11 months ago
0
3
0
@buherator.bsky.social
add a skeleton here at some point
11 months ago
1
1
0
Looks like German Port museum is closed these days, but does nobody know if you can at least see Peking from somewhat upclose ?
www.shmh.de/ausstellunge...
loading . . .
PEKING – SHMH
https://www.shmh.de/ausstellungen/peking/
11 months ago
0
0
0
Slides are up
objectivebythesea.org/v7/talks/OBT...
add a skeleton here at some point
11 months ago
0
0
1
A bit of travel ahead, but it will take me to CCC! It’s been 10 years since I’ve been, excited to see what it looks like this year!
12 months ago
0
2
0
Help a non-native speaker here, um, how else ?
add a skeleton here at some point
12 months ago
1
0
0
I just wrapped up a talk at
#OBTS
about ios/macos font renderer vulnerability used in operation triangulation. No PoC was released and I wanted to make one to study the attack surface.
12 months ago
1
3
1
Objectives By The Sea v7.0 live stream
www.youtube.com/live/LKzJuEZ...
#obts
loading . . .
YouTube
Share your videos with friends, family, and the world
https://www.youtube.com/live/LKzJuEZGjJ8?si=kMNU1p8QgFbfFF6Y
12 months ago
0
0
1
Hey
@binary.ninja
, can we do something about this? I like being on dev but storage on macbooks ain't cheap... :D (i last cleaned it in July, before that I had 3 years of updates )
about 1 year ago
0
1
0
Obfuscated code in Windows kernel? Sounds like a good place to dig for bugs!
@phlaul.bsky.social
shows how and why:
blog.talosintelligence.com/finding-vuln...
loading . . .
Finding vulnerabilities in ClipSp, the driver at the core of Windows’ Client License Platform
By Philippe Laulheret ClipSP (clipsp.sys) is a Windows driver used to implement client licensing and system policies on Windows 10 and 11 systems. Cisco Talos researchers have discovered eight vulne...
https://blog.talosintelligence.com/finding-vulnerabilities-in-clipsp-the-driver-at-the-core-of-windows-client-license-platform/
about 1 year ago
0
2
1
Post a picture you took (no description) to bring some zen to the timeline
add a skeleton here at some point
about 1 year ago
0
1
0
Hi friends old and new! I’m Aleks and I specialize in obsolete technologies such as typewriters, film cameras and memory corruption exploitation.
about 1 year ago
0
1
0
In which Ali details his approach to developing a full code execution exploit for Ichitaro Word (office suite popular in Japan and the region), turning a weird OOB index access into a more capable memory corruption primitive:
blog.talosintelligence.com/exploiting-l...
over 1 year ago
0
1
0
I've been afk , manning the lines on a square rigged tall ship. If you've tried to reach me but I haven't responded, I'm catching up slowly.
over 1 year ago
0
2
0
PoC||GTFO 0x22 is out! I have an article in there about having fun with Microsoft XFG as an aid for reverse engineering.
add a skeleton here at some point
almost 2 years ago
1
2
0
Wrapped up a talk at Objective by The Sea cornference about augmenting Axel Souchet’s WTF to target macOS kernel components. Hope to get the code out there shortly!
about 2 years ago
0
0
0
Story of decipherment of linear b reads much like your modern reverse engineering project. Chipping away at the problem until things start to snowball and everything starts to make sense. With magic constants in form of names of towns playing one of the key roles.
about 2 years ago
1
0
0
Looks like I got a first CVE in MS Edge's new PDF engine
https://talosintelligence.com/vulnerability_reports/TALOS-2023-1747…
CVE-2023-36887 Not the most fun bug ever, but it's memory corruption :) It was fun digging into the implementation that's a combo of Acrobat and V8.
over 2 years ago
2
5
0
you reached the end!!
feeds!
log in