@FAMASooni
iAccount based inJapan
About this account
- Account based in
- Japan
- Connected via
- Japan Android App
Account-level information from X, not a live location or the device used for a specific post.
Security research blog: https://nitter.cf/t.co/iTsZ04qDQ8 GitHub: https://nitter.cf/t.co/nfFPKkjf5O
Tokyo-to, Japan
Joined April 2016
- Tweets4.2K
- Following875
- Followers1.1K
- Likes2.3K
Interesting👀
If you're interested in SDR / RF security and looking to attend @BlackHatEvents EU, make sure to get your early bird tickets with discount pricing before September 25th!
👉 Black Hat EU (London), December 7-8 2026: blackhat.com/europe/training…
#SIGINT #RFsecurity #SDR
FAMASoon retweeted
If you're interested in SDR / RF security and looking to attend @BlackHatEvents EU, make sure to get your early bird tickets with discount pricing before September 25th!
👉 Black Hat EU (London), December 7-8 2026: blackhat.com/europe/training…
#SIGINT #RFsecurity #SDR
こちらまだ定員に余裕があります!(抽選ですが、この感じだと全員参加できるかなぁと⋯)
ペンテストに興味ある学生の皆様、ぜひご参加ください
📢9/29(火)公開勉強会
「NFLabs. Purple Flair Workshop」を開催します!
第4回「Pentest CTF 入門ワークショップ」
当社主催のCTFの過去問や Purple Flair のコンテンツを使い、ペネトレーションテストの基本的な進め方やPentestジャンルのCTF問題の解き方をハンズオン形式で学びます。
今回は学生限定で開催します。
皆さんの参加をお待ちしています!
■日時:9/29(火)19:00 〜 21:00
■参加費:無料
■申込〆切: 9/24(木) 09:00 まで
申込はこちら▼
nflabs.connpass.com/event/40…
#サイバーセキュリティ #PurpleFlairWorkshop #NFLabs #エヌ・エフ・ラボラトリーズ
FAMASoon retweeted
I'm hiring an exceptional Offensive Security Researcher for my team at NVIDIA (Offensive Security Research - OSR).
Firmware, microcode, RISC-V, hypervisors, and shipping mitigations like HW CFI, Memory Tagging, and Pointer Masking from the ground up.
jobs.nvidia.com/careers?quer…
FAMASoon retweeted
Looking for opportunities as a Security Researcher / Malware Researcher / Threat Researcher / CTI Analyst / Reverse Engineer.
Malware, Windows internals, PE, unpacking, deobfuscation, firmware, hardware and +.
Brazil or LATAM - Remote worldwide
keowu.re
DMs open.
SharePoint + Pre-Auth RCE + MemShell? 👀
We’ve published our technical analysis of CVE-2026-65660, covering the attack chain from an Allow Anonymous site and a pre-auth SharePoint vulnerability to RCE and MemShell.
Take a look:
blog.viettelcybersecurity.co…
FAMASoon retweeted
In July, Microsoft fixed CVE-2026-50343, a Windows privilege escalation bug reported by Calif and 9 others, dubbed “Dark Elevator”.
But was it really fixed?
Ask @tiraniddo
projectzero.google/2026/09/w…
Has anyone taken this course? I'm interested, but since there are no reviews, I'm wondering what it's like.
maldevacademy.com/edr-course
chatgpt.com/share/6aa623b2-f…
Qwen 3 のアーキテクチャについての質問だったが、どんどん話がそれたり深掘りしたりして楽しかった
I bought Build a Reasoning Model (From Scratch)
manning.com/books/build-a-re…
FAMASoon retweeted
few things; number one as evidenced by the comments, it's written via LLM with a little mcp magic (no shade thrown)
two: HVCI-protected structures like the IDT etc plus the additional scrubbing of the typical API leak surface by MS a few patches ago, 200 classes checked, no leaks. You cannot get kernel addresses using only this driver with HVCI enabled. The driver's read primitive works fine on regular kernel memory (EPROCESS, etc.) - but you need an initial address. (how do you get it? anyone? )
We're missing a single valid Kernel VA.
three: @FAMASoon said he lost the PoC he did have. (sussy baka) something about C2 callback and rootkit activity, which makes sense in the Github issue until you realize this is standard cheat bullshit used to bypass anti-cheat. XOR is not your demon. HID keyboard direct interfaces are only bad if the client exe calls home. (where's the client?) gg - no unpriv exploit achieved. will dig deeper tomorrow.
Either they ran some shit as admin, or have some primitive or leak I'm not seeing in this driver. (in either case fill me in)
gg to them and good job if indeed the video is legit.
This quoted post is unavailable.
Replying to @FAMASoon
i got you = )
nitter.cf/5mukx/status/208875530…
Introduction to Windows shellcode development series
Part 1:- securitycafe.ro/2015/10/30/i…
Part 2:- securitycafe.ro/2015/12/14/i…
Part 3:- securitycafe.ro/2016/02/15/i…
#redteam #exploit #shellcode
Introduction to Windows shellcode development series
Part 1:- securitycafe.ro/2015/10/30/i…
Part 2:- securitycafe.ro/2015/12/14/i…
Part 3:- securitycafe.ro/2016/02/15/i…
#redteam #exploit #shellcode