Daniel
@0xc0da
Followers
291
Following
2K
Media
31
Statuses
3K
Don't follow me, I'm lost too. Tweets in English and Portuguese. Opinions are my own and do not represent those of my employers.
Houston, TX
Joined June 2012
And here are the slides for my @BSidesSATX talk this afternoon: https://t.co/WpORvjDYeW Thank you @BSidesSATX for having us! The conference was awesome and the crew is outstanding. Great job!
speakerdeck.com
BSidesSATX 2023 (Jun/23) You have to build your organization’s Red Team from scratch. Where do you start? Organizations building internal red teams a…
2
36
91
Your smart home may be a hacker's new favorite target. 🏠MS in Cyber Security Engineering Professor, Nikolas Behar, gives "At the Edge of It All" listeners the breakdown on modern cyber threats—and shares must-know defense tips. Listen here: https://t.co/Wt439y4hUl
#CyberSecurity
sandiego.edu
For Cybersecurity Awareness Month, Nikolas Behar, professor of cybersecurity at the University of San Diego, sat down with "At the Edge of It All" to talk about how digital shortcuts and household...
0
1
1
@sec_defcon @defcon @RachelTobac @_sn0ww @kminx @rekdt @jamieantisocial @PerryCarpenter @JC_SoCal @cxstephens @st0_ic Other key participants in @SEC_defcon at @DEFCON 33 include @fir3d0 @_nextjenn @TheDukeZip @kl34n @ednas @TipsyBacchus @WellKnitTech @pl4ntl4dy @0xc0da @g4mbl3z and @klipper801. Explore all #DEFCON33 villages! ➡️ https://t.co/sxs3HBhtKV
#SocialEngineering #InfoSec
infosecmap.com
Title: DEF CON 33 Description: "Access Everywhere." This year we're thinking about how to make information and services available to everyone. Available wherever you are, whoever you are, and usable...
1
3
12
Today I am releasing a new blog post on VSM "secure calls" + the SkBridge project to manually issue them!! This blog talks about how VTL 0 requests the services of VTL 1 and outlines common secure call patterns!!! Blog: https://t.co/xzB1s7HoPO SkBridge: https://t.co/0zO0E1L4Sy
3
100
258
Check out our presentations in the village this year! Do Scammers dream of electric Phish? Lessons learned from deploying AI-driven phishing ops Saturday, Aug 9th @ 12 pm
0
1
6
Normalize Conference Talks To Also Include Talks About Failed Projects and Failed Research Tell us stories of the journey and the struggles. None of us are perfect and We should stop admitting that we all haven't completely screwed up research.
16
12
108
Come work with me in complex, large scale, innovative binary analysis problems! Remote position in US (focused on cryptoanalysis): https://t.co/k66840n1kq - In the coming days I will also post 2 remote positions in Brazil!
1
6
32
We're happy to announce that our CFP is now live and will be accepting talks until April 27 at midnight! Why waste any time and go ahead and submit? Check out https://t.co/eruXgxJn9P or https://t.co/pdkov41vTz for more information!
0
4
7
The xz backdoor was initially caught by a software engineer at Microsoft. He noticed 500ms lag and thought something was suspicious. This is the Silver Back Gorilla of nerds. The internet final boss.
149
3K
19K
I recently wrote a tool as a side-project these weeks leading up to the Christmastide to do something I have really always taken for granted in reversing - symbols! As an example, this tool can diff functions and UDTs and it showed maybe we will get ETW events for hypercalls!
3
17
94
I'll be speaking at @defcon workshops and @cloudvillage_dc this year. If you will be in Vegas hope to meet you there =) #defcon #blueteam #aws #CloudSecurity #Cloud
3
2
12
Invest in all new burner gear before @defcon because hackers always burn 0days on attendees every year. #baddefconadvice
1
5
12
TL;DR - if you can't draw a *direct* line between the thing you're briefing and how it impacts risk, it's probably not appropriate at a board level.
2
3
50
Please stop reporting raw vulnerability management metrics to the board. They do not care about you scanning numbers - most vulns are never exploited anyway. Boards care about risk. Give them metrics on what's standing in the way of faster remediation for KEV's (for instance).
16
28
273
🎙️Thanks to all that listen to and supports my new podcast! Thanks to my guests for joining me and sharing their amazing stories! If you listen to my podcast, The Hacker Factory, you will like this one. 🙏 https://t.co/aQjge9yRd7
1
17
83
It's 3pm now, but we haven't stopped the party yet! Make sure you check out our events before they close at 4pm. Also don't forget our fantastic talks that are going on! If you haven't thanked our sponsors & chatted with them yet, do it! This event can't happen without them ❤️
0
1
1
Join us next weekend at @BSidesSATX to chat about in-house Red Teams!
1600 on 6/10 will be Daniel Marques & Victoria Dea w/"Kickstarting your in-house Red Team", Dan Eldad w/"Accidentally Exposed - Classifying Publicly Exposed Cloud" & Sandip Dholakia w/"SciFi to Reality: Use of AI in Cybersecurity". Buy your tickets now!
1
1
3
Our schedule is now live! We'll be featuring the different talks in the coming weeks. Don't forget to purchase your tickets,note that some workshops are at eventbrite! These require a paid ticket & additional registration, so grab them sooner than later!
2
7
16
Better shortly before the event than not at all… right? Apologies for the delay, but our events schedule is now live! Check out https://t.co/z87VoU5BW6 for more info!
0
3
2