Matteo Malvica
banner
matteomalvica.bsky.social
Matteo Malvica
@matteomalvica.bsky.social
content dev and researcher @offsectraining | r&d @OutflankNL | 🥁

www.uf0.org
Reposted by Matteo Malvica
Elon Musk’s claim the X DDoS is from “IP addresses originating in the Ukraine area” is missing a key fact - it was actually IPs from worldwide, not just Ukraine.

It’s a Mirai variant botnet, made of compromised cameras. They specifically targeted a Twitter ASN which had origin servers not behind CF
March 10, 2025 at 10:30 PM
Reposted by Matteo Malvica
Reminder that the Call for Presentations for Sikkerhetsfestivalen (The Security Festival) is open. OWASP Oslo is hosting an AppSec track. Scroll down the page for English version:

sikkerhetsfestivalen.no/alle-nyheter...
February 10, 2025 at 11:20 AM
Reposted by Matteo Malvica
I got Linux running in a PDF file using a RISC-V emulator.

PDFs support Javascript, so Emscripten is used to compile the TinyEMU emulator to asm.js, which runs in the PDF. It boots in about 30 seconds and emulates a riscv32 buildroot system.

linux.doompdf.dev/linux.pdf
github.com/ading2210/li...
January 31, 2025 at 8:02 PM
Reposted by Matteo Malvica
David Lynch gave us the language we needed to better articulate the indescribable strangeness of our shared reality. “Lynchian” is so overused because it’s a viscerally understandable word without any known synonyms. I can’t imagine a more beautiful artistic legacy than that.
January 16, 2025 at 7:47 PM
Reposted by Matteo Malvica
For the hackers among us: o1 can do @halvarflake.bsky.social 's crackaddr-mini without any problems , which no other model can do. It's going to revolutionize the AIxCC program and automated vulnerability finding in general.
December 5, 2024 at 6:05 PM
Reposted by Matteo Malvica
In 1999 I underwent a difficult brain tumor surgery. It resulted in hearing problems. I had to deal with this in school, college, PhD, and now in my professional career. I'm sharing my story with a hope to help others who might be coping with difficulties. blog.lukaszolejnik.com/invisible-di...
Invisible disability in the world of technology
I'm sharing my story and experiences to help others who might be struggling with similar difficulties; I hope it can be helpful for at least one person struggling with difficulties such as disability,...
blog.lukaszolejnik.com
November 17, 2024 at 10:29 AM
Reposted by Matteo Malvica
There is glory in the unexpressed thought.
November 22, 2024 at 10:00 PM
tonight’s office
November 21, 2024 at 4:43 PM
Reposted by Matteo Malvica
Vulnerability names: this is log4shell. We named it this way because it's in log4j and gives you shell.

Threat actor names: this is HAIRY EEL, aka VIOLIN HIPPO, no relation to VEXING MACKEREL. Also known as APT-74, formely APT-C-92. We named it this way because he's a guy in Bulgaria
November 19, 2024 at 7:54 PM
The history of google Chrome development and design choices as a comic.
An enduring gem

www.google.com/googlebooks/...
Google Chrome
Look under the hood of Google Chrome in this comics interpretation of key engineering decisions with art by Scott McCloud.
www.google.com
November 7, 2024 at 10:54 PM
👋
November 1, 2024 at 12:26 PM