Advertisement · 728 × 90

Posts by Meysam

Post image

Come learn how to hack the XNU kernel, like a pro 🍎
with beautiful diagrams to guide every step. :)

📅 Nov 10-12 (3 days)
📍 Four Seasons Hotel Seoul, South Korea

🔗 More info powerofcommunity.net/#training

8 months ago 5 0 0 0
Preview
GitHub - R00tkitSMM/Pishi: Pishi is a code coverage tool like kcov for macOS. Pishi is a code coverage tool like kcov for macOS. - R00tkitSMM/Pishi

Here is the source code of my fuzzer ai development for macOS.
github.com/R00tkitSMM/P...

1 year ago 8 0 1 0

Oh, We have a long weekend ahead in Germany/Berlin.
Maybe I can finish my unpublished blog posts.
Share blogs or papers that I can read and enjoy.

1 year ago 1 0 0 0
Pishi Reloaded: Binary only address sanitizer for macOS KEXT. In the part 1 of my tutorial style blog post about fuzzing, I discussed how we can instrument the macOS KEXTs to collect code coverage at the basic block or edge level.

My new blog post, which I presented at #Zer0Con2025
A binary level macOS KEXT kernel address sanitizer

r00tkitsmm.github.io/fuzzing/2025...

1 year ago 13 4 0 0

Will be in Korea next week for Zer0Con. Ping me and let’s chat about software security.

1 year ago 2 0 1 0
Preview
Code reuse in the age of kCET and HVCI

blog.slowerzs.net/posts/keyjum...

1 year ago 5 1 0 0

Paged Out! #6 has arrived! And it's jam-packed with content!
You can download it here:
pagedout.institute?page=issues....

1 year ago 23 27 0 3
Preview
GitHub - jduck/bs25-slides: Slides from "Musing from Decades of Linux Kernel Security Research" at BOOTSTRAP25 Slides from "Musing from Decades of Linux Kernel Security Research" at BOOTSTRAP25 - jduck/bs25-slides

Happy to share my slides from BOOTSTRAP25. Unfortunately the bug discussed is still not patched in Linux 6.14.0 despite it being reported explicitly. Slides are in markdown but there's a PDF in "releases" too github.com/jduck/bs25-s...

1 year ago 14 7 1 0

[RSS] The Evolution of Dirty COW (1)


u1f383.github.io ->


Original->

1 year ago 4 2 0 0
Preview
GitHub - fkie-cad/squid: RISC-V emulator for high-performance fuzzing with AOT instead of JIT compilation 🦑 RISC-V emulator for high-performance fuzzing with AOT instead of JIT compilation 🦑 - fkie-cad/squid

Neat, #riscv emu with #LibAFL support
github.com/fkie-cad/squid

1 year ago 7 2 0 0
Advertisement

Did you know that pressing CTRL+D in linux terminal is like pressing ENTER? (to some extent, of course)
Well, I didn't, so after randomly investigating what CTRL+D actually does, I've decided it's a fun topic to write about:
hackarcana.com/article/ctrl...

1 year ago 10 2 3 0
Librasan by WorksButNotTested · Pull Request #3023 · AFLplusplus/LibAFL Implementation of ASAN target side components in rust. The implementation sits alongside the existing libqasan (although that could be withdrawn in future if we are happy with it). It is selected ...

This is so cool: The LibAFL_QEMU ASan implementation was ported to rust
github.com/AFLplusplus/...

#LibAFL #QEMU #ASan #Rust

1 year ago 11 4 0 0
Zer0Con Zer0Con is POC’s NEW ‘CLOSED’ international security conference. It focuses on finding, analyzing, and exploiting vulnerabilities. Zer0Con aims to have high-level technical presentations.

I will talk about macOS Kernel fuzzing at the zer0con.org#schedule-sec... conference.

1 year ago 4 0 0 0

Very interesting thank you

1 year ago 0 0 0 0
Preview
From Day Zero to Zero Day Find security holes before the bad guys do.

nostarch.com/zero-day

1 year ago 2 0 0 0
Preview
Introduction to Computer Organization: ARM Edition Introduction to Computer Organization: ARM Edition [Plantz, Robert] on Amazon.com. *FREE* shipping on qualifying offers. Introduction to Computer Organization: ARM Edition

www.amazon.com/Introduction...

1 year ago 2 0 1 0

I usually dig into a topic I research by googling and reading blogs, manuals, sources,… and have not read a technical book for a year.

What would you recommend for low level software/CPU/OS security/exploit topics?

1 year ago 1 0 1 0
Post image

All videos from The 38th Chaos Communication Congress (38C3) 2024:

media.ccc.de/b/congress/2...

#cybersecurity #informationsecurity #hacking #exploitation #iOS #android #apple #exploitation #reverseengineering #vulnerability

1 year ago 30 17 0 1

Doing Apple Silicon’s security research for days non stop. Hope it becomes a blogpost at some point.

1 year ago 2 0 0 0

I sometimes print them. But I think iPad is the only option to deal with PDFs.

1 year ago 1 0 0 0
Advertisement
Post image

Steve Glass, talks about potential vulnerabilities in TLV parser of AWDL in jun 2019,
And some months later ian beer reported that famous vulnerability in exactly TLV parser of AWDL.
Conferences are sources of ideas.

2 years ago 6 1 0 0

It’s not* the best option. :)

1 year ago 1 0 1 0

Where do you read papers? I have kindle and it’s the best option.

1 year ago 0 0 3 0

Thank you it’s too late for me now.

1 year ago 0 0 0 0

I’m in Hamburg, but wouldn’t attend #38c3 due to ticket issue :)

1 year ago 2 0 1 0

Re-sharing to keep bluesky rolling

go.bsky.app/EhGFSVj

1 year ago 45 13 0 3
2024 LLVM Dev Mtg - Adding Pointer Authentication ABI support for your ELF platform
2024 LLVM Dev Mtg - Adding Pointer Authentication ABI support for your ELF platform YouTube video by LLVM

I have read and watched a lot of papers and presentations this week about
Compiler 🤝 OS 🤝SoC
security.
www.youtube.com/watch?v=bytW...
www.youtube.com/watch?v=C1nZ...

These two are about PAC

1 year ago 4 0 0 0
Low-Level Software Security for Compiler Developers

Pishi2 needed more compiler/LLVM
Knowledge.
This is very good reference.

llsoftsec.github.io/llsoftsecbook/

1 year ago 4 1 0 0
Advertisement
Pishi: Coverage guided macOS KEXT fuzzing. This blog post is the result of some weekend research, where I delved into Pishi, a static macOS kernel binary rewriting tool, which I presented at POC2024. During the weekdays, I focus on Linux kerne...

Have written new macOS binary level fuzzing blog post.
Second part of

r00tkitsmm.github.io/fuzzing/2024...

Don’t know when to publish it

1 year ago 9 2 0 0

Took 3 weeks off, bought a new MacBook. It’s to to fuzz the kernel.

1 year ago 7 0 0 0