Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

Mathias Payer

@gannimo@infosec.exchange
  • Open on infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

1358 Followers
279 Following
23 Posts
Joined November 07, 2022
Homepage:
https://nebelwelt.net
Group:
https://hexhive.epfl.ch

Posts

Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · May 21, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Have you ever wondered what is running on your Android phone? As it turns out, it's not just the apps that you install but there are also so called "trusted applications" that handle your sensitive data like passwords, fingerprints, or keys.

We have developed a high-level rehosting approach that enables security researchers to thoroughly test these applications and found 17 0-days that were responsibly disclosed and are now fixed. This work was presented at this week's IEEE Symposium on Security and Privacy, one of the top-4 security conferences.
https://nebelwelt.net/blog/2026/0521-taemu.html

nebelwelt.net

TÄMU: Emulating Trusted Applications

Android runs sensitive applications in the so-called

6
0
1
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · May 21, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Good bye San Francisco, it was a pleasure!

The last few days I spent at the IEEE Symposium on Security and Privacy (Oakland) to catch up with friends, learn about the latest research in security and to support Philipp in presenting our latest research work TÄMU --- high-level rehosting of trusted applications on the Android platform. Check out the short blog for a few more details:
https://nebelwelt.net/blog/2026/0521-oakland.html

nebelwelt.net

IEEE Symposium on Security and Privacy (Oakland) '26

What a great time at the IEEE Symposium on Security and Privacy (informally called Oakland) in San Francisco. With about 700 attendees, Oakland...

3
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · May 13, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

For ACM CCS we are organizing a doctoral symposium. The goal is to enable PhD students to discuss their research agenda and get feedback from mentors across varying sub areas.
The submission deadline is July 30 and accepted students will receive a generous travel grant. So please apply and share with your colleagues!
https://www.sigsac.org/ccs/CCS2026/call-for/call-for-doctoral-symposium.html

www.sigsac.org

ACM CCS 2026

CCS2026

6
0
8
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 27, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

From "What the Fuzz?" to "All The Fuzz!" (Keynote fuzzing workshop @ NDSS'26)

Reflections on the three phases of fuzzing: from origins of fuzzing to the greybox fuzzing, ending with how fuzzing will continue evolving in the future.
Comments welcome!

https://youtu.be/In3kRAVVbzQ?si=lNTX6ebFu_rvRZbf&t=548

NDSS 2026 - FUZZING 2026, Welcome and Opening Remarks, and Keynote by Mathias Payer
YouTube

NDSS 2026 - FUZZING 2026, Welcome and Opening Remarks, and Keynote by Mathias Payer

NDSS Symposium

8
0
2
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 25, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

RE: @aristot73@infosec.exchange

LLM bug finding vs fuzzing: LLMs explore a different part of the bug space, my guess is that we'll see a similar curve as with fuzzing where new bugs get more expensive to find with the key difference that we can hit new capabilities to find different types of bug patterns resulting in a saw function than just a sigmoid. Fun times ahead, especially for researchers looking into defense!

infosec.exchange

Aristotelis Tzafalias: "Sean Heelan and Marcel Böhme walk into a bar... …" - Infosec Exchange

12
2
5
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 22, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @rene_mobile@infosec.exchange
@rene_mobile@infosec.exchange this annoying s2idle only seems to be a thing now. Apparently Windows support is better. But generally when I turn my laptop off, I want it to be off and not wake up every 5min and burn through my battery. Not sure who came up with that idea.
1
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 22, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Subscription bombing is a (re-)emerging threat vector where attackers flood your inbox with thousands of unwanted messages. This is not just nuisance but attackers often leverage subscription bombing to hide their true goals such as support scams or account takeovers. Even worse, subscription bombing has become a service. We analyzed 24 subscription bombing attack campaigns to reflect and provide insights.

Check out our CACM article for details: https://cacm.acm.org/practice/subscription-bombing-email-under-attack/

3
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 22, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Has anyone checked out the new Frame.Work Laptop 13 Pro? I'm especially interested in power management given that I hate the most recent Lenovo X1 as the keyboard is annoying, it no longer has the trackpoint, it only support s2idle, and in general battery runtime is abysmal. [I.e., would not recommend Lenovo anymore]

https://frame.work/ch/en/laptop13pro

4
2
1
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 20, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

LLMs are automating not just coding, but vulnerability discovery and exploitation. At scale, this shifts the economics of offensive security: lower skill barriers, faster iteration, and massively increased attack surface coverage.

As exploitation becomes cheap and ubiquitous, how can we leverage this for defense?

https://nebelwelt.net/blog/2026/0420-AIpocalypse.html

nebelwelt.net

The AIpocalypse or how LLM-based exploitation is the new normal

In the last 3-4 months, AI models have made an immense jump in exploitation capabilities. Several talks and blog posts highlight the

8
2
4
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Apr 03, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Outlook is a bane for humanity, even in space 🤣,🚀
https://www.tomshardware.com/software/microsoft-office/artemis-ii-astronaut-finds-two-outlook-instances-running-on-computers-call-on-houston-to-fix-microsoft-anomaly-puzzled-caller-describes-two-outlooks-and-neither-one-of-those-are-working

7
0
1
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 28, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @freddy@social.security.plumbing
@freddy I wasn't involved in the decision making but support the no-LLM-based on honor principle. Most teams were strongly in favor as slopping takes a lot of the fun out of CTFs. There's a difference between online and onsite though as policing is next to impossible. And the situation evolves, so we'll have to see where this whole movement goes.
2
3
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 17, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @stefan@infosec.exchange
@stefan Switzerland is not part of eID
0
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 17, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

While I'm a bug fan of second factor authentication for high risk environments, it also comes at a cost due to additional friction.

Can someone explain to me while the EU for the Horizon portal had to create a new dedicated 2FA app that maximises friction? I log into this portal once every 1.5 years. This means I'll likely have to go through the 2FA recovery process every single time.

3
3
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 13, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @ligasser@social.epfl.ch
@ligasser most servers stopped advertising the software name, would have to start parsing SPF and potentially connect to IMAP as well
0
5
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 13, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

What's the state of digital sovereignty for our academic landscape?

Inspired by a similar post looking at digital sovereignty of municipalities, I explored what messaging infrastructure universities rely on. Sadly, many have switched to hyper scalars but few large universities keep running their own email infrastructure. Germany, Austria, France does not look too bad and lead by example.

[Note that the assessment is based on a simple MX records comparison against a list of known scalars, I don't yet check SPF records or guesstimate the SMTP software/version, this may be done in a future version.]

Check out the interactive map: https://nebelwelt.net/gannimo/unimx/

nebelwelt.net

University Email Sovereignty Map

20
9
14
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 09, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @kleisli@mastodon.social
@kleisli @epfl vielen Dank! Bin schon länger hier ;)
0
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 05, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @ricci@discuss.systems
@ricci thank you! this would not be possible with lots of support --- and amazing collaborators
1
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Mar 05, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

🎉 I'm excited to share that I've been appointed to Full Professor, effective today: https://ethrat.ch/en/appointments-march-26/

Looking back, this milestone would not have been possible without the incredible group of students, collaborators, and colleagues I had the pleasure of working with over the past 20 years of research. I'm also grateful for all the collaborators, letter writers, mentors, supporters, and whoever helped and supported us on the way.

The HexHive group has grown into a vibrant group focusing on software and systems security 🔐. Together we have secured over CHF 12M in funding 💰 for the group (including the prestigious ERC Starting Grant and ERC Advanced Grant), published close to 200 papers 📄, with 26 papers at USENIX Security, 13 at Oakland, 12 at NDSS, and 11 at CCS.

But the achievements I value most are not the distinguished paper awards, open source prototypes, or grants. I'm most proud of the people who spent time in my lab. Out of those, I especially cherish the 16 PhD students who have graduated and are now carrying forward the spirit of the HexHive lab: inclusive, collaborative research in software and system security, working together on security challenges that matter.

ETH-Rat

19 new professors appointed at ETH Zurich and EPFL

The ETH Board appointed a total of seven women and twelve men as professors. It also took note of the resignations of four professors and thanked them for their services.

42
12
11
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Feb 28, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

It was my honor to give a keynote at the FUZZING workshop at #NDSSSymposium today. Under the title From "What The Fuzz?" to "All The Fuzz!", I discussed how fuzzing evolved over time from its origins as random mutation testing over the greybox revolution to fuzzing niches. The key takeaways are that fuzzing matured as a field, coverage-guided feedback was key to its success, and the future is customizing fuzzing to niches where the next breakthroughs will be contextual and semantic.

The slides are available at https://nebelwelt.net/files/26FUZZING-presentation.pdf

Happy to hear any feedback!

infosec.exchange

Infosec Exchange

12
1
4
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Feb 27, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

It was a pleasure to present Sysphuzz at #NDSSSymposium this year. Our key intuition is that focusing in under-fuzzed areas allows us to discover new bugs even in extensively fuzzed code. We applied this intuition to the Linux kernel by boosting basic blocks that were rarely hit even after years of fuzzing.

The blog post is at: https://nebelwelt.net/blog/2026/0226-sysyphuzz.html

infosec.exchange

Infosec Exchange

8
0
2
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Feb 23, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

On my way ✈️ to San Diego for @ndsssymposium@bird.makeup to catch up on the latest security trends. I'm excited to present our paper Sysyphuzz on focusing energy on under explored areas in the kernel and to give a keynote at the fuzzing workshop on Friday. Let me know if you're around for a chat or, ideally, for a morning run! 🌅🏄🏃

bird.makeup

bird.makeup - User

7
0
1
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Jan 27, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange
Replying to @mkskeller@tech.lgbt
@mkskeller Dagstuhl is always hard to reach. I heard RUB is only bad when DB fails. Which seems to start to approximate always 😅
0
0
0
0
Open post
gannimo
Mathias Payer @gannimo@infosec.exchange · Jan 26, 2026
Mathias Payer
@gannimo@infosec.exchange

Securitatis inquisitor and professor at EPFL leading the HexHive 🐝 group, focusing on system/software security (he/him).

infosec.exchange

Getting to MPI is quite a challenge. Bus - Train - Flight - Skytrain - S Bahn - Bus (Schienenersatzverkehrsautobus) - Train - Underground. I spent over 2hrs for the final 40km. If I were just named Kipchoge 🏃😅

1
2
0
0

Remote instance

infosec.exchange
Open on original server

Media

313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 20:06:53 UTC