bemodtwz (@bemodtwz) 's Twitter Profile
bemodtwz

@bemodtwz

Here for netsec stuff. Author of Evall Villain. Contributor to Radare2.
infosec.exchange/@bemodtwz

ID: 1214246223105757184

linkhttps://github.com/swoops calendar_today06-01-2020 18:05:05

381 Tweet

325 Followers

137 Following

Doyensec (@doyensec) 's Twitter Profile Photo

If you're interested in #binary reversing, you should definitely checkout the radare #r2con2024 online conference! Doyensec's bemodtwz will be presenting on bypassing malicious pickle detection. #doyensec #appsec #security #python rada.re/con/2024/#pick…

If you're interested in #binary reversing, you should definitely checkout the <a href="/radareorg/">radare</a> #r2con2024 online conference! Doyensec's <a href="/bemodtwz/">bemodtwz</a> will be presenting on bypassing malicious pickle detection.
#doyensec #appsec #security #python

rada.re/con/2024/#pick…
bemodtwz (@bemodtwz) 's Twitter Profile Photo

issue 4My, nearly hour long, pre-recorded #r2con2024 talk should play tomorrow at 20:30 (GMT+1 IIRC). Go from pickle basics to breaking tools. Even my own decompiler gets fooled, multiple times I also share the detailed solution of "schizophrenic pickle" from@pagedout_zine

radare (@radareorg) 's Twitter Profile Photo

After a 10 minutes break to make some 🍿 we have bemodtwz from Doyensec closing #r2con2024 with the last presentation under the title "Cracking pickles with r2” youtu.be/I0oDtU1PQbs

After a 10 minutes break to make some 🍿 we have <a href="/bemodtwz/">bemodtwz</a> from <a href="/Doyensec/">Doyensec</a> closing #r2con2024 with the last presentation under the title "Cracking pickles with r2” youtu.be/I0oDtU1PQbs
Doyensec (@doyensec) 's Twitter Profile Photo

👿Eval Villain update - available now! Recent improvements: #CSPT sink detection, addEventListener sync & needle and copy/paste injection exporting, along with bug fixes & improved usability. Install today! github.com/swoops/eval_vi… #doyensec #appsec #security #xss #bugbountytips

Doyensec (@doyensec) 's Twitter Profile Photo

At #doyensec, we're proud to say we're one of the sponsors of the latest edition of the independent ezine PagedOut! Download it today for the in-depth technical content and amazing artwork! I hear page 12 is 🔥 . pagedout.institute/?page=issues.p…

At #doyensec, we're proud to say we're one of the sponsors of the latest edition of the independent ezine <a href="/pagedout_zine/">PagedOut</a>! Download it today for the in-depth technical content and amazing artwork! I hear page 12 is 🔥 .

pagedout.institute/?page=issues.p…
bemodtwz (@bemodtwz) 's Twitter Profile Photo

Yeah, new Eval Villain is out! Mostly it's bug fixes, refactoring and updates to the default config. Coolest new feature though is hiding at the bottom of the configuration page. Click "Copy Injection" and you can paste Eval Villain anywhere JavaScript is accepted.

Doyensec (@doyensec) 's Twitter Profile Photo

Thanks so much paπcake 🌱 🏴󠁥󠁳󠁣󠁴󠁿 for speaking to our team about radare's radare2 & automating it w/ r2pipe. Some really innovative work being done there! Take a look if you're into #forensics, #reverseengineering and/or exploit development! rada.re/n/ #doyensec #appsec

Gynvael Coldwind (@gynvael.bsky.social) (@gynvael) 's Twitter Profile Photo

(please RT for reach - thank you!) Learned a cool new Linux trick? Know an interesting quirk in a network protocol? Or have something else to share? Write a 1-page article for the #6 issue of Paged Out! :) pagedout.institute/?page=cfp.php Soft deadline is Feb 1st.

Doyensec (@doyensec) 's Twitter Profile Photo

In the latest Doyensec research, our Norbert Szetei (73696e65) takes a closer look at the SMB3 Kernel Server (ksmbd) component of the Linux kernel. Check it out today & learn what he found, which led to multiple CVEs! #Doyensec #Appsec #Security #Linux blog.doyensec.com/2025/01/07/ksm…

In the latest Doyensec research, our Norbert Szetei (<a href="/73696e65/">73696e65</a>) takes a closer look at the SMB3 Kernel Server (ksmbd) component of the Linux kernel. Check it out today &amp; learn what he found, which led to multiple CVEs! 
#Doyensec #Appsec #Security #Linux

blog.doyensec.com/2025/01/07/ksm…
Doyensec (@doyensec) 's Twitter Profile Photo

Following attempts to contact the casdoor maintainers, we're releasing an advisory regarding the software. This vulnerability lets attackers exfiltrate data from the identity provider (IdP) or obtain access over SCIM. Details: doyensec.com/resources/Doye… #doyensec #appsec #security

Following attempts to contact the casdoor maintainers, we're releasing an advisory regarding the software. This vulnerability lets attackers exfiltrate data from the identity provider (IdP) or obtain access over SCIM. Details:
doyensec.com/resources/Doye…

#doyensec #appsec #security
eljoselillo7 (@eljoselillo7) 's Twitter Profile Photo

Szymon and I just published a deep dive into common #OAuth security pitfalls and how to avoid them! Check out our latest post, complete with a handy checklist to keep your org secure. 🚀 Read it now! 👇

Doyensec (@doyensec) 's Twitter Profile Photo

Ahoy! 🦜 Our first "!exploitable" post provides a technical dive 🤿 into the sea 🌊 of IoT exploitation. Read it today to learn how our team 🏴‍☠️ developed an exploit while floating in the Mediterranean! blog.doyensec.com/2025/02/11/exp… #doyensec #appsec #security #iot #exploits

Ahoy! 🦜 Our first "!exploitable" post provides a technical dive 🤿 into the sea 🌊 of IoT exploitation. Read it today to learn how our team 🏴‍☠️ developed an exploit while floating in the Mediterranean! 

blog.doyensec.com/2025/02/11/exp…

#doyensec #appsec #security #iot #exploits
Gynvael Coldwind (@gynvael.bsky.social) (@gynvael) 's Twitter Profile Photo

A lot of you were telling me I should do my courses in English, so here we go: Mastering Binary Files and Protocols: The Complete Journey hackarcana.com/bin?utm=gyn-tt This is an A-to-Z course teaching a fundamental skill in practical IT, useful in cybersec/coding/etc Start Apr 8th

Doyensec (@doyensec) 's Twitter Profile Photo

Our 73696e65's latest research has resulted in at least 1⃣5⃣ CVEs in ksmbd🤯, including multiple use-after-frees, bounds checks, type confusion and overflows‼️ Check it out today! doyensec.com/research.html#… #doyensec #appsec #security #linux

Our <a href="/73696e65/">73696e65</a>'s latest research has resulted in at least 1⃣5⃣ CVEs in ksmbd🤯, including multiple use-after-frees, bounds checks, type confusion and overflows‼️ Check it out today!

doyensec.com/research.html#…

#doyensec #appsec #security #linux
Doyensec (@doyensec) 's Twitter Profile Photo

🚀We have just released a new Security Advisory for NASA's CFITSIO library 🛰️. Click the link for details on the Heap Overflow, Type Confusion, Out-of-Bound Writes and other vulnerabilities discovered by our Adrian Denkiewicz ! doyensec.com/resources/Doye… #doyensec #appsec #security

🚀We have just released a new Security Advisory for <a href="/NASA/">NASA</a>'s CFITSIO library 🛰️. Click the link for details on the Heap Overflow, Type Confusion, Out-of-Bound Writes and other vulnerabilities discovered by our <a href="/a_denkiewicz/">Adrian Denkiewicz</a> !

doyensec.com/resources/Doye…

#doyensec #appsec #security