the grugq's newsletter

Subscribe
Archives
February 4, 2025

February 4, 2025

February 4, 2025

Interview with @Adam_pi3 and me about LKRG, in English https://t.co/TN7B3OKJHj and Polish https://t.co/TFdCuQ49XI

— Solar Designer (@solardiz) February 3, 2025


https://t.co/JE68XbHamM
Our newest research project is finally public! We can load malicious microcode on Zen1-Zen4 CPUs!

— Matteo Rizzo (@_MatteoRizzo) February 3, 2025


PoC Exploit Released for macOS Kernel Vulnerability CVE-2025-24118 (CVSS 9.8)

Uncover the details of CVE-2025-24118, a critical vulnerability in #Apple's #MacOS. Understand the risks and the patched versionshttps://t.co/IqAu1aHQc2

— Gray Hats (@the_yellow_fall) February 3, 2025


A little while ago I wrote a long piece detailing some of the issues we commonly find in Active Directory during compromises. If you are defender, work in identity or manage AD in anyway hopefully you find something valuable in here - https://t.co/jWPowVrqkM

— Matt Zorich (@reprise_99) February 4, 2025


This was a huge research project -- at least some details are partially released today! 😩 https://t.co/agCn8wqeIS

— Tavis Ormandy (@taviso) February 3, 2025

AMD: Microcode Signature Verification Vulnerability · Advisory · google/security-research · GitHub

### Summary Google Security Team has identified a security vulnerability in some AMD Zen-based CPUs. This vulnerability allows an adversary with local administrator privileges (ring 0 from outside...


Chaplin

A visual speech recognition (VSR) tool that reads your lips in real-time and types whatever you silently mouth. Runs fully locally.

GitHub - amanvirparhar/chaplin: A real-time silent speech recognition tool.

A real-time silent speech recognition tool. Contribute to amanvirparhar/chaplin development by creating an account on GitHub.


Today I’m sharing a blog post on the implementation of kernel mode shadow stacks on Windows! This post covers actively debugging the Secure Kernel and also outlines why VTL 1 is relied on to help maintain the integrity of the supervisor shadow stacks! https://t.co/Ti0FxkDS4J

— Connor McGarr (@33y0re) February 3, 2025


assad falling literally a month before the US blew up the regime change factory… all time bungle

— estado libre y soberano de pensilvania (@notbenfish) February 3, 2025
Don't miss what's next. Subscribe to the grugq's newsletter:
X