October 11, 2024
October 11, 2024
We finally get some description of how "adminless" on Windows 11 (now in canary insider versions, so you won't be seeing this in deployment for a while) works at a technical level.
— Brian in Pittsburgh (@arekfurt) October 9, 2024
In sum, Windows executes things requiring elevation with a separate, just-in-time account: https://t.co/GI9g0uv558 pic.twitter.com/ieCfJHJ5Z2
Lol the blokes have just nuked Kuwait pic.twitter.com/YvJEz1Np18
— Disgraced Meteorologist (@STRONG_PlSS) October 9, 2024
@binnig.bsky.social on Bluesky
“Officers searched the car and discovered cash, a loaded revolver, scales — and a bag that had ‘Definitely not a bag full of drugs’ printed on it, with drugs inside, the Police Bureau said Wednesday.” https://www.oregonlive.com/crime/2024/10/officers-seize-bag-with-definitely-not-a-bag-full-of-drugs-printed-on-it-and-it-was-full-of-drugs-police-bureau-says.html?gift=c9d23971-f2dd-4d5f-ad1d-fa7a7cc0e83f
Just published two new projects, https://t.co/epsqFCYJMU and https://t.co/Yueq6pFv1e
— namazso (@namazso) October 9, 2024
I always missed how there is no dUP2 but for dll hijacking runtime patch — now there is! I’ll port MagicSigner over to it soon as well.
📄 End-to-end Encrypted Cloud Storage in the Wild: A Broken Ecosystem (To appear at ACM CCS 2024)
— Kien Tuong Truong (@kientuong114) October 10, 2024
Joint work with @jonas__hofmann.
We analyzed five end-to-end encrypted cloud storage services and found severe vulnerabilities in four of them.
🌐: https://t.co/6Kz0QlnUFP
For @PaloAltoNtwks - Retweeting my 2015 tweet, which quoted ~2000 @dotMudge https://t.co/DqeV06fVbk
— haroon meer (@haroonmeer) October 10, 2024
Intro to Windows kernel exploitation
— 0xor0ne (@0xor0ne) October 11, 2024
Part 1: https://t.co/nNTKqtgmA4
Part 2: https://t.co/QwbNVNNyt2
Part 3: https://t.co/f1hRv93yrB
Part 4: https://t.co/vS1SUVUF0c
Part 5: https://t.co/2aDetUK8g1#windows #cybersecurity pic.twitter.com/1c3eFVzAPb