Nspace
nspace.bsky.social
Nspace
@nspace.bsky.social
Computer security by day. In my free time I sometimes play CTF with Organizers (https://ctftime.org/team/42934). 
Dazed and confused, but trying to continue.
Fedi: @nspace@infosec.exchange
Languages: it_IT, en_US, de_DE
Reposted by Nspace
Douglas (Part 1) - Gator Days
June 23, 2025 at 2:33 PM
Reposted by Nspace
June 19, 2025 at 8:05 PM
Reposted by Nspace
A SIGTERM is issued by the operating system; my process effortlessly dodge rolls it, then immediately executes a perfect parry against the MMU. Before it can recover, a null pointer has been loaded into EBX. The kernel groans at my shit.
June 6, 2025 at 1:36 PM
Reposted by Nspace
how to read a C++ codebase:

1. compile it with DWARF debug info enabled
2. open it in Ghidra
3. look at the C decompilation
May 31, 2025 at 2:38 PM
Reposted by Nspace
Confirmed! Former Master of Pwn winner Manfred Paul used an integer overflow to exploit #Mozilla Firefox (renderer only). His excellent work earns him $50,000 and 5 Master of Pwn points. #Pwn2Own #P2OBerlin
May 17, 2025 at 10:48 AM
Reposted by Nspace
I think autistic people are often mistaken for being argumentative or needing to be right when, in reality, it's more about FEELING right and needing the other person to understand WHY.
May 14, 2025 at 12:38 PM
Reposted by Nspace
These boxes are not moving. A mind-bending optical illusion by Japanese artist Jagarikin.
May 7, 2025 at 1:03 AM
Reposted by Nspace
AGI will only have been achieved when the robot vacuum can understand that my shoes are not a permanent obstacle and it can vacuum there when i finish putting them on
April 19, 2025 at 8:48 PM
Reposted by Nspace
So, anyone putting together a Switch 2 hacking team and need a competent reverse engineer?
April 8, 2025 at 12:07 PM
Reposted by Nspace
Ouch, AMD masterclass in what not to do with cryptography to secure its microcode patching mechanism 😱 ‼️
Blog: Zen and the Art of Microcode Hacking
This blog post covers the full details of EntrySign, the AMD Zen microcode signature validation vulnerability recently discovered by the Google Security team.
bughunters.google.com
March 8, 2025 at 10:49 AM
Reposted by Nspace
Being an exploit dev in 2025 allows you to write JavaScript professionally without having to use React, Node.js, or any library at all, really—there’s something beautiful about that
March 6, 2025 at 1:14 AM
Reposted by Nspace
Google published details on EntrySign, an AMD Zen microcode signature validation vulnerability (CVE-2024-56161) that can allow threat actors to install malicious firmware: bughunters.google.com/blog/5424842...

It also released Zentool, a tool to jailbreak AMD processors: github.com/google/secur...
March 6, 2025 at 1:42 PM
Reposted by Nspace
February 4, 2025 at 1:24 AM