@Atredisi
iAccount based inUnited States
About this account
- Account based in
- United States
- Connected via
- United States Android App
Account-level information from X, not a live location or the device used for a specific post.
Atredis is a 100% worker-owned team of world-class security researchers and consultants. We do risk-centric, research-driven security testing and consulting.
All over North America
Joined August 2013
- Tweets642
- Following1.2K
- Followers2.9K
- Likes274
Atredian Matt Burch (@emptynebuli) will be presenting his ATM supply chain research and demonstrating new exploitation tooling at @GrrCon!
π
Friday, Sept 25 @ Noon
π Abstract: buff.ly/GvZm49g
π¨ Our research just hit @WIRED!
Atredian Matt Burch's (@emptynebuli) latest research highlights gaps in the ATM software supply chain, allowing for malicious system access via the controls designed to protect the platform! Read the full story: buff.ly/GKJwanu
This September Atredian Matt Burch (@emptynebuli) will be presenting "Compounding Interest: Exploiting the ATM Supply Chain" at @GrrCon in GrandRapids MI. Come learn about the ATM supply chain attack surface.
π
Friday, Sept 25 @ Noon
π Abstract: buff.ly/GvZm49g
If you missed the @defcon main stage talk "Compounding Interest: Exploiting the ATM Supply Chain," you have 1hr to catch Matt Burch's (@emptynebuli) encore at @paymentvillage.
ποΈ AUG 8, 4:00PM
π Payment Village
#DEFCON #DEFCON34 #Hacking
buff.ly/5XPg8aH
You have 1hr to catch Matt Burch (@emptynebuli) present Compounding Interest: Exploiting the ATM Supply Chain at @defcon.
ποΈ AUG 8, 12:30PM
π Main Track 4
#DEFCON #DEFCON34 #Hacking
buff.ly/fDeMQhh
Tomorrow catch Matt Burch (@emptynebuli) present Compounding Interest: Exploiting the ATM Supply Chain at @defcon.
ποΈ AUG 8, 12:30PM
π Main Track 4
#DEFCON #DEFCON34 #Hacking
buff.ly/fDeMQhh
Planning your @defcon week? Be sure to add CAPTURE_THE_COIN CTF to your list and catch Matt Burch's encore presentation of "Compounding Interest: Exploiting the ATM Supply Chain." Watch the talk, then put those TTPs to the test in the CryptoPro CTF.
buff.ly/yfRaHli
In 1hr at @BlackHatEvents, join Matt Burch (@emptynebuli) as he dives into the ATM supply chain. In his briefing, Matt will be disclosing 9 CVEs and officially releasing his tooling, ragavan.
π
2:35 PM in South Seas C&D, Level 3
#BlackHat #BHUSA
buff.ly/8Hnubnk
Tomorrow at @BlackHatEvents, join Matt Burch (@emptynebuli) as he dives into the ATM supply chain. If you are attending Black Hat, add this to your schedule!
π
AUG 5 at 2:35 PM
π South Seas C&D, Level 3
#BHUSA #Cybersecurity #InfoSec #BlackHat
buff.ly/8Hnubnk
9 CVEs, 1 new tool, and a deep dive into the ATM supply chain.
@defcon is exactly 1 week out! Catch Matt Burch (@emptynebuli) present Compounding Interest: Exploiting the ATM Supply Chain.
ποΈ AUG 8, 12:30PM
π Main Track 4
#DEFCON #DEFCON34 #Hacking
buff.ly/fDeMQhh
Next week at @BlackHatEvents, join Matt Burch (@emptynebuli) as he dives into the ATM supply chain. If you are attending Black Hat, add this to your schedule!
π
AUG 5 at 2:35 PM
π South Seas C&D, Level 3
#BHUSA #Cybersecurity #InfoSec #BlackHat
buff.ly/8Hnubnk
Are you itching to try out Matt Burch's (@emptynebuli) ATM research from @blackhatevents + @defcon? CryptoPro will be part of Capture the Coin CTF via @paymentvillage. Drop by and test drive ragavan π§ #BlackHat #BHUSA #DefCon #InfoSec
buff.ly/yfRaHli
If you are heading to @DefCon this summer, don't miss Atredian Matt Burch (@emptynebuli) and his continued CryptoPro research in Compounding Interest: Exploiting the ATM Supply Chain. He will be on the main stage Track 4, Saturday Aug 8 at 12:30.
buff.ly/fDeMQhh
Atredian Matt (@emptynebuli) spoke with @DarkReading about his upcoming @BlackHatEvents talk "The Cost of Obscurity: Exploiting the ATM Supply Chain" ποΈ π΅
Bottom line: Disk encryption doesn't help if the keys are stored right next to the lock. buff.ly/E1BRVhk
"Bad News for the Average Pentester" ... But who wants to be average?
Here's some thoughts from Shawn on why Human-Powered Pentesting is here to stay.
atredis.com/blog/2026/5/15/bβ¦
We decided to revisit an old research problem with some new LLM powered tooling. Check out our latest blog post to see how we approached this research, and the new Java deserialization gadget chains it discovered in just two days! buff.ly/CeAQZ2B
On a recent engagement, we exploited a previously disclosed privilege escalation bug in Tenable's Nessus Agent. No public PoC was available, so we made one; check it out here buff.ly/IMMQWEo
Atredis identified a vulnerability in the way Rapid7's Nexpose was generating passwords to protect its Java KeyStore which is used to encrypt saved credentials. This vulnerability was reported to Rapid7 and a patch is being rolled out today! Details here: buff.ly/U7qaplX
Command & Conquer'd: Worming RCEs through a classic multiplayer game. Check out the full writeup from our @DistrictCon Junkyard submission here:
buff.ly/tp7EzQ8
By @dronesec and @jordan9001
#Security #modding #rce