@dwizzzleMSFT
David Weston (DWIZZZLE)
5 years
Twitter: “exploit mitigations are so easy to bypass” Walking by office of someone who actually writes exploits: “damn, I’m still stuck trying to work around all this annoying shit”
11
62
373

Replies

@_f0rgetting_
Yunhai Zhang
5 years
@dwizzzleMSFT So, he should join my BlueHat Shanghai talk. ^_^
1
0
1
@dwizzzleMSFT
David Weston (DWIZZZLE)
5 years
@_f0rgetting_ Bold talk, you haven’t faced this yet ;)
0
0
0
@tnare
Erant
5 years
@dwizzzleMSFT damn, way to call @smealum out
1
0
1
@dwizzzleMSFT
David Weston (DWIZZZLE)
5 years
@tnare @smealum He can’t be stopped by mitigation’s, only security compliance training. “What is SDL”
0
0
2
@hacks4pancakes
Lesley Carhart
5 years
@dwizzzleMSFT @alizardx “Just check it the admin reused a password on Pinterest”
0
0
20
@s7ephen
Stephen A. Ridley
5 years
@dwizzzleMSFT ☝🏾☝🏾☝🏾☝🏾☝🏾☝🏾☝🏾
0
0
0
@WarPwnie
war🦄 pwnie
5 years
@dwizzzleMSFT @hacks4pancakes Lol. Good security is just making it so anyone exploiting your network has some unique headache to deal with - if they have more targets they may just move on and come back later - that gives you more time.
1
0
7
@dwizzzleMSFT @hacks4pancakes "Damn that one character/argument they happened to randomly block/include that's making this difficult"
0
0
1
@windsheep_
Marius (wishi)
5 years
@dwizzzleMSFT Infosec twitter is full of experts. Most of these exploit devs can't even create rop chains.
0
0
4
@dwizzzleMSFT
David Weston (DWIZZZLE)
5 years
@esizkur I think that’s part of the impact, taking the bug you have and creating the right primatives with mitigations in the way
0
0
0
@Frizlab
François Lamboley
5 years
@dwizzzleMSFT @SwiftOnSecurity I’m so glad hearing something saying this! Definitely an unpopular opinion; so much I was starting to believe the restrictions were actually useless…
0
0
0
@combatswimmers
Frozen Chosen
5 years
@dwizzzleMSFT Open source binary and it will eventually be bypassed. Close src it & eventually reversed. Faraday cage it & will eventually be leaked. U get point. Look at pwn2own. Bypassing fully patched everything. Wut do u do at msft again??
0
0
0