/explore

Click through on any links that interest you or select the planets on the right to continue exploring the Outer Web.
You are here

blog.zapb.de
| | blog.quarkslab.com
3.2 parsecs away

Travel
| | Following our presentation at Black Hat USA, in this blog post we provide some details on CVE-2022-20233, the latest vulnerability we found on Titan M, and how we exploited it to obtain code execution on the chip.
| | blog.inhq.net
6.0 parsecs away

Travel
| | The article describes a new vulnerability in the KeepKey hardware wallet. Vulnerable code in the Ethereum transaction handling can leak memory from attacker-controlled address locations onto the display when processing a crafted EthereumSignTx message. An attacker with physical access to an unlocked KeepKey device can extract the BIP39 seed or other confidential device secrets via this flaw without tampering with the device hardware or leaving permanent traces.
| | blog.includesecurity.com
3.9 parsecs away

Travel
| | One of the first major goals when reversing a new piece of hardware is getting a copy of the firmware. Once you have access to the firmware, you can reverse engineer it by disassembling the machine code. Sometimes you can get access to the firmware without touching the hardware, by downloading a firmware update file ... Read more
| | serverless.industries
22.7 parsecs away

Travel
| When using a Raspberry Pi Pico as a USB Mouse or Keyboard, you may want to disableCircuitPythons flash drive and the REPL serial console.