_esoj1 Profile Banner
Esoj Profile
Esoj

@_esoj1

Followers
431
Following
275
Media
7
Statuses
91

Pwning stuff

Rio de Janeiro, Brasil
Joined July 2020
Don't wanna be here? Send us removal request.
@_esoj1
Esoj
4 months
Aqui estão os slides para a minha talk da bsides rj -
0
1
5
@_esoj1
Esoj
2 years
RT @gris_ufrj: Junte-se ao GRIS:.Se você é estudante ou entusiasta da segurança da informação e deseja participar ativamente de pesquisas i….
0
3
0
@_esoj1
Esoj
2 years
RT @gris_ufrj: Explorando técnicas de engenharia reversa em jogos:.
0
6
0
@_esoj1
Esoj
2 years
RT @fkaasan: Tavis found a fascinating architectural CPU bug 🐞.
0
4
0
@_esoj1
Esoj
2 years
RT @bsdaemon: The video for the talk is available. I hope folks enjoy and feel free to send me feedback, comments, criticisms (privately o….
0
20
0
@_esoj1
Esoj
2 years
RT @bsdaemon: The slides for my keynote at are available (as all others) - it has a few less known stories on uarch….
0
44
0
@_esoj1
Esoj
2 years
In RET2ASLR we can leak ASLR from the BTB in under a minute. Plz use the speculation control feature for userspace applications dealing with sensitive data.
2
3
30
@_esoj1
Esoj
2 years
Vulnerable code can be as simple as a for loop + ret executing multiple times 🥲
Tweet media one
0
0
6
@_esoj1
Esoj
2 years
This talk got old really fast, now we can do the same thing with return instructions! 🥳🤯😰.Check out RET2ASLR:
@ekoparty
Ekoparty | Hacking everything
2 years
En la #Eko2022, @_esoj1 nos presentó una nueva técnica basada en Spectre v2 para abusar de los predictores de rama con el fin de eludir ASLR en las CPU de Intel, abusando de dos hechos: 1) el atacante puede contaminar el búfer de destino de la rama, y 2) las víctimas pueden
2
6
27
@_esoj1
Esoj
2 years
RT @eltctfbr: Novo artigo em parceria com @mentebinaria ! É sobre segurança de OAuth 2.0! Confiram! Está bem legal! Autor: @vrechson. https….
0
5
0
@_esoj1
Esoj
2 years
RT @pwningsystems: Found some Spectre-v1/MDS gadgets in the Linux kernel at work with @fkaasan, including one in ‘copy_from_user’ 😁😁. https….
0
17
0
@_esoj1
Esoj
2 years
RT @bsdaemon: Google embargo on another linux kernel issue found by @_esoj1 and I finally lifted. here is the advisory: .
0
30
0
@_esoj1
Esoj
2 years
RT @bsdaemon: So, @_esoj1 and I found another linux kernel spectre v2 mitigation problem (. At this point: is there….
0
8
0
@_esoj1
Esoj
2 years
RT @bsdaemon: This finding by @_esoj1 and I just demonstrates how much the side channel issues are still misunderstood.
0
8
0
@_esoj1
Esoj
2 years
RT @CoppeSistemas: HEADS' member @_esoj1 (José Oliveira) has disclosed a previously unknown flaw in the Linux Kernel that allows the bypass….
0
4
0
@_esoj1
Esoj
2 years
It turns out that the user-mode spectre-BTI mitigations were slightly broken since four years ago when they were introduced in prctl syscall.
0
25
73
@_esoj1
Esoj
3 years
RT @bsdaemon: Apparently naming bugs really works on getting attention. So much that the name becomes the focus and folks fail to realize i….
0
3
0
@_esoj1
Esoj
3 years
RT @bsdaemon: Bugs properly reported, time to go drink and celebrate all the blessings of the year, pray for the dreams to keep coming true….
0
1
0
@_esoj1
Esoj
3 years
RT @caioluders: XSS 2 RCE on @flipper_zero. Got RCE through an XSS on , here's the writeup thread. .
0
74
0
@_esoj1
Esoj
3 years
RT @r3tr074: Da uma lida lá pessoal, deu trabalho escrever kkk, e fica ligado q logo tem mais posts sobre browser internals.
0
3
0