@SpecterDevi
iAccount based inFrance!
About this account
- Account based in
- France
- Connected via
- Canada App Store
! X says this location may be affected by a proxy or VPN.
Account-level information from X, not a live location or the device used for a specific post.
Interested in Security and Exploit Development. Nano is the one true text editor.
🇨🇦 Ontario
Joined August 2015
- Tweets1.2K
- Following273
- Followers38.9K
- Likes1.7K
Please don’t take this or the replies as justification to personally attack anyone, this is mostly just a consequence of the times we’re in. It just makes me a bit sad and the situation is unfortunate.
LLMs fracturing the console research space feels like a good litmus test of where we're at lmao. The future is slop and the fun is dead.
But r/blackops2 said devkits/testkits have special magic that makes them impossible to ban so this can't be true
Specter retweeted
Method we used (>5 years ago, now) on ps5 to fiddle with mp4 and hv memory: github.com/fail0verflow/pros…
hope it helps for linux!
Specter retweeted
Incredible talk on hacking the Xbox One security processor youtube.com/watch?v=FTFn4UZs…
Played @tihmstar's custom beatsaber song, 10/10 would play again
Some people already know this, but thought I'd mention here too... unfortunately basically all of my low fw PS5s got stolen recently, so I'm not sure what my future in console research will look like. Replacing this stuff might be too be difficult & expensive to be worth it :(
Specter retweeted
My @dayzerosec co-host zi and I are giving our 1st training @ hardwear.io with a focus on attacking security hypervisors! Trainings are something we've wanted to do for a while.
Take a look and share to those who would be interested :)
hardwear.io/usa-2025/trainin…
Specter retweeted
We have a training by @SpecterDev & Zi on Attacking Hypervisors From KVM to Mobile Security Platforms hardwear.io/usa-2025/trainin…
I've published a write-up on reversing and analyzing Samsung's H-Arx hypervisor architecture for Exynos devices, which has had a lot of changes in recent years and pretty interesting design. Hope you all enjoy :)
dayzerosec.com/blog/2025/03/…
I've published a write-up on reversing and analyzing Samsung's H-Arx hypervisor architecture for Exynos devices, which has had a lot of changes in recent years and pretty interesting design. Hope you all enjoy :)
dayzerosec.com/blog/2025/03/…
Specter retweeted
Recon Training 23-26 June 2025: KVM to Mobile Security Platforms - Attacking Hypervisors with @SpecterDev and zi from @dayzerosec (4 days) For more details recon.cx/2025/trainingFromKV…
My @dayzerosec co-host zi and I are giving our 1st training @ hardwear.io with a focus on attacking security hypervisors! Trainings are something we've wanted to do for a while.
Take a look and share to those who would be interested :)
hardwear.io/usa-2025/trainin…
Specter retweeted
github.com/google/security-r…
Our newest research project is finally public! We can load malicious microcode on Zen1-Zen4 CPUs!
RE: byepervisor
do people care enough about not wanting to use rest mode and resume to switch the primary exploit for byepervisor to the jump table one? its higher maintenance and possibly slightly less stable but would be slightly more convenient to run I guess
65%yes
35%no
997 votes • Final results Specter retweeted
Inside console security: How innovations shape future hardware protection - helpnetsecurity.com/2024/10/… - @PlayStation @hardwear_io #HardwareSecurity #hw_ioNL2024 #PlayStation #gaming #CyberSecurity #netsec #security #InfoSecurity #ITsecurity #CyberSecurityNews #SecurityNews
I've published the repo for Byepervisor (we love named vulns out here). Contains exploit implementation for two PS5 hypervisor bugs for 2.xx and lower. Slides from the talk + vod should hopefully be published soon.
github.com/PS5Dev/Byeperviso…
I've published the repo for Byepervisor (we love named vulns out here). Contains exploit implementation for two PS5 hypervisor bugs for 2.xx and lower. Slides from the talk + vod should hopefully be published soon.
github.com/PS5Dev/Byeperviso…
Specter retweeted
The PS5's hypervisor has kept the system secure for years—now, vulnerabilities are being revealed. What does this mean for gamers? 🕵️♂️🚨
Join @SpecterDev at #hw_ioNL2024
Know More: hardwear.io/netherlands-2024…
#ps5 #exploit #hardware
Specter retweeted
There are a few ways on PS5 to defeat HV. One of methods that I've found was related to APIC: struct apic_ops is located in RW segment of kernel data. With KRW you can overwrite a function pointer inside it like xapic_mode and get into ROP, for example (just need to bypass CFI).