Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

Azeria

@Azeria@mastodon.social
mastodon 4.7.0-beta.1
  • Open on mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

8763 Followers
58 Following
13 Posts
Joined April 03, 2017
Twitter:
https://twitter.com/fox0x01
Website:
https://azeria-labs.com/index.html
Book Site:
https://arm-assembly.com

Posts

Open post
Azeria
Azeria @Azeria@mastodon.social · Sep 12, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @Azeria@mastodon.social
Impact: Basically, any AArch64 software compiled with GCC & the stack protection feature (flag -fstack-protector) that is vulnerable to buffer overflows via dynamically-sized variables can be exploited without bypassing this exploit mitigation. If you want to reproduce this bug with the PoC from the advisory on your x86/64 machine, here’s how:
22
3
14
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Sep 12, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @Azeria@mastodon.social

GCC’s stack protection feature (aka canary) is an exploit mitigation to prevent buffer overflows from overwriting saved registers on the stack to take control over the program flow. It makes exploitation much harder. You often need an additional bug to bypass this mitigation.

The issue: When targeting AArch64, this mitigation didn’t protect saved registers from overflows in C99-style dynamically allocated local variables and alloca() objects.

14
3
7
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Sep 12, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @Azeria@mastodon.social
CVE-2023-4039: “GCC's -fstack-protector fails to guard dynamic stack allocations on ARM64” On AArch64 targets, GCC's stack smashing protection does not detect or defend against overflows of dynamically-sized local variables. Affecting all versions of GCC for AArch64 targets.
14
2
14
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Sep 12, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

Time for an Arm-twist! CVE-2023-4039

Tom Hebb (Meta red team) and I discovered an 0day in GCC (for AArch64 targets) during my Arm exploitation training.

It renders stack canaries against overflows of dynamically-sized variables useless.

https://developer.arm.com/Arm%20Security%20Center/GCC%20Stack%20Protector%20Vulnerability%20AArch64

79
7
55
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Aug 07, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

I’m doing two book signing sessions in collaboration with Patrick Wardle at Black Hat and Defcon this year! 🥳

Black Hat:
Thursday 8/10 - 12:15pm:
BH Bookstore - Breakers Registration 2

Defcon:
Saturday 8/12 - 11:00am
Caesar’s - Alliance Ballroom - Room 321

33
0
14
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Jul 09, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

So where is everyone nowadays? Twitter? Mastodon? BlueSky? Threads?

34
32
4
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Mar 31, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

My own book copy arrived today!

Words can’t express how it feels like to hold 3 years of work in your hands…

284
27
65
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Mar 21, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @saper@mastodon.social
@saper@mastodon.social it’s an introduction to different Arm environments you can use for Research and debugging. E.g. cloud, boards, emulation.
0
0
0
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Mar 21, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @Lee_Holmes@infosec.exchange
@Lee_Holmes@infosec.exchange Awh thanks Lee :)
1
0
0
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Mar 21, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

My new book "Arm Assembly Internals & Reverse Engineering" is up for pre-order!

Save the date for the official launch: May 9th.

Can't wait for you to dive into the world of Arm Assembly!

Check out the official book page for more info:
https://arm-assembly.com

156
13
97
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Jan 28, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @Azeria@mastodon.social
@securingdev@infosec.exchange @0xamit@infosec.exchange @malwaretech@infosec.exchange for RE, I usually use a mix of MacOS and Linux. My IDA Pro version is MacOS based so that’s what I have to use for disassembling. But depending on what binary you’re reversing, if it’s Unix based, you can use something like Debian to debug it (or remote debug it in my case)
1
0
0
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Jan 28, 2023
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social

@securingdev@infosec.exchange @0xamit@infosec.exchange @malwaretech@infosec.exchange tbf I mainly use Debian, especially for Arm distros. I haven’t use Kali since I was a junior Pentester. I would recommend a clean system, then carefully install what you really need as you go. Especially for exploit dev, you’d need debuggers or GDB wrappers (e.g. GEF or Peda) and other tools you don’t necessarily find on Kali. For malware analysis, it depends what type of malware you’re analyzing

infosec.exchange

Keith Hoodlet :verified: :donor: (@securingdev@infosec.exchange) - Infosec Exchange

4
2
1
0
Open post
Azeria
Azeria @Azeria@mastodon.social · Apr 26, 2022
Azeria
@Azeria@mastodon.social

Sneaky Bit Flipper | Azeria Labs creator | Author of “Arm Assembly Internals & Reverse Engineering”

mastodon.social
Replying to @malwaretech@mastodon.social
@malwaretech@mastodon.social \o/
1
2
0
0

Remote instance

mastodon.social
Open on original server

Media

313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 01:18:52 UTC