@collinrm Profile picture

Collin Mulliner

@collinrm

Engineer | Security Researcher | Recovering Academic | KD2WON | Currently: securing Autonomous Vehicles @cruise

Similar User
Joshua J. Drake photo

@jduck

lcamtuf photo

@lcamtuf

Dino A. Dai Zovi photo

@dinodaizovi

Natalie Silvanovich photo

@natashenka

Charlie Miller photo

@0xcharlie

Rolf Rolles photo

@RolfRolles

chrisrohlf photo

@chrisrohlf

FX of Phenoelit photo

@41414141

Dan Guido photo

@dguido

`Ivan photo

@Ivanlef0u

mdowd photo

@mdowd

Julien Vanegue photo

@jvanegue

ς๏гєɭคภς0๔3г (corelanc0d3r@infosec.exchange) photo

@corelanc0d3r

Dave Aitel photo

@daveaitel

Alex Matrosov photo

@matrosov

Pinned

FluxN0de a platform to prototype and explore LoRa and #LoRaWAN applications on #ESP32 based boards. The platform provides a JavaScript runtime with easy access to the LoRa radio. This was my side project in the last year. mulliner.org/blog/blosxom.c… GH: github.com/crmulliner/flu…


Collin Mulliner Reposted

lolooololo

Tweet Image 1

This!

We used this exact phrase at @Square in 2014 when I first started. We took on the as much of the complexity around PCI compliance as possible for Square sellers so that they didn't have to buy security products for their business. We were the secure product for their business.



Collin Mulliner Reposted

Apple released a hearing aids feature for the AirPods Pro a while ago. I bought a pair for grandma, but then realized that the feature was geoblocked in India So we at @_lagrangepoint decided to unblock it. It ended up involving a leaky microwave and building a Faraday cage:

Tweet Image 1

Collin Mulliner Reposted

Apple indeed added a feature called "inactivity reboot" in iOS 18.1. This is implemented in keybagd and the AppleSEPKeyStore kernel extension. It seems to have nothing to do with phone/wireless network state. Keystore is used when unlocking the device. github.com/search?q=repo%…

Tweet Image 1
Tweet Image 2
Tweet Image 3

New from 404 Media: police freaking out at iPhones stored for forensic examination mysteriously rebooting themselves. This makes brute forcing much harder. Cops hypothesize Apple pushed an update that tells nearby iPhones to reboot if not on phone network 404media.co/police-freak-o…



Collin Mulliner Reposted

📢 The WOOT 2024 presentations are now all available on YouTube: youtube.com/playlist?list=… Enjoy!


Collin Mulliner Reposted

Happy to announce the first release of @northpolesec Santa version 2024.10 github.com/northpolesec/s… Highlights: 1. Streamlined UI with silencing options and copy to data to clipboard features


Collin Mulliner Reposted

An Assistant Professor position in the S3 group -(@s3eurecom) at @EURECOM in vulnerability detection, analysis, exploitation, and/or remediation is still open. It is still time to send your applications! eurecom.fr/en/job/vulnera… Feel free to ask me any questions !


Collin Mulliner Reposted

It’s cracking me up that a hacker conference is mad there is a back door in their badge. I’d be mad if there wasn’t!

Responding to the #defcon32 badge controversy: DEF CON thrives on community collaboration and has operated for over 30 years successfully working with hundreds of vendors including the dozens that have helped with our badges over the years. For this year’s Raspberry Pi badges,…



Collin Mulliner Reposted

... and the best paper award goes to ... "Exploiting Android’s Hardened Memory Allocator" by Philipp Mao, Elias Valentin Boschung, Marcel Busch, and Mathias Payer 🥇 Join their presentation tomorrow at the 10:45 am session 🤩

Tweet Image 1

Collin Mulliner Reposted

I love and hate this pwnie. Miss her so much but she deserves this award for real

Tweet Image 1

Legend

Here is the video of it.



One of my Google wifi access points seemed to have died. Not able to factory reset it anymore. Sad.


Collin Mulliner Reposted

I wrote about ace hacking team @shellphish and the DARPA quest to make AI patch software flaws for us. See it in the @washingtonpost

Tweet Image 1

My hot take… just kidding i have the day off


Collin Mulliner Reposted

Live from Littlefield, it's Summercon 2024 - Day 1! Please tune in here: youtube.com/watch?v=RlwyTV…


Just a tiny hangover is all you really need to start off @SummerC0n … also glad I’m not running windows this morning


Collin Mulliner Reposted

Another banger from retr0id "Jailbreaking RabbitOS (The Hard Way)". It's got everything: secureboot bypasses, an Android bootkit, a tethered USB jailbreak over WebSerial, GPL violations, and highly questionable logging practices. A very fun read !! da.vidbuchanan.co.uk/blog/r1-jailbr…

Tweet Image 1

Collin Mulliner Reposted

Feeling the (Acid) Burn after Summercon? Crash (Override) and relax at our "Hackers" watch party! 🎬 Sat 7/20, 9:30pm at Littlefield. Prizes for dressing as your favorite character; popcorn, a fully-stocked bar, and DJ after! Free to the public -- rollerblade by with friends!

Tweet Image 1

Collin Mulliner Reposted

While everyone is trying to break Bluetooth's cryptographic protocols, Jonas found a pairing bypass in the proprietary "Fast Connect" protocol in AirPods 🎧 More details in his blog post: blogs.gnome.org/jdressler/2024…


Collin Mulliner Reposted

1987: The first Summercon hacker conference was held in St. Louis, Missouri and was run by the hacker zine Phrack. Held in 8 cities over its existence, it's still going strong. This year's edition takes place July 19-20 in New York City in the burough of Brooklyn. No sleep til?

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.