@opensrcsec Profile picture

Open Source Security Inc.

@opensrcsec

Open Source Security Inc. Creators of @grsecurity®

Joined January 2019
Similar User
grsecurity photo

@grsecurity

Linux Kernel Security photo

@linkersec

Brad Spengler photo

@spendergrsec

offensivecon photo

@offensive_con

quarkslab photo

@quarkslab

Pietro Borrello photo

@borrello_pietro

Caido photo

@CaidoIO

Blackstorm Security photo

@blackstormsecbr

Openwall photo

@Openwall

sam4k photo

@sam4k1

Seth Jenkins photo

@__sethJenkins

Rolf Rolles photo

@RolfRolles

Dataflow Security photo

@dfsec_com

Alex Ionescu photo

@aionescu

Sandfly Security photo

@SandflySecurity

Open Source Security Inc. Reposted

Open Source Security Inc. Reposted

Performance isn't the enemy of security: we care about both. Today's patches finish off a set of security/performance improvements to eBPF. Below we show a ~30x speedup vs vanilla in running the eBPF selftests with every single #grsecurity option enabled!

Tweet Image 1
Tweet Image 2

Open Source Security Inc. Reposted

The first ever end-to-end cross-process Spectre exploit? I worked on this during an internship with @grsecurity! An in-depth write-up here: grsecurity.net/cross_process_…


Open Source Security Inc. Reposted

We have written a short technical dive into how we currently reuse Rust components within gccrs, a compiler written in C++, and how we will continue doing so in the future, eventually compiling them using our own compiler. rust-gcc.github.io/2024/09/20/reu…


Open Source Security Inc. Reposted

The monthly report for August 2024 is out: rust-gcc.github.io/2024/09/03/202… GSoC is now over, with amazing work from our three students @thisisjjasmine, @bald_chimaev and @_mmahad They all want to continue working on the project in their free time, which makes us super happy ❤️


Open Source Security Inc. Reposted

In today's blog post, @_minipli shows how we were able to use a newer C feature and a GCC plugin addition to ease our maintenance burden, reducing grsecurity's patch size by over a megabyte with no change in functionality. Enjoy! grsecurity.net/reducing_maint…


Open Source Security Inc. Reposted

rust-gcc.github.io/2024/08/12/202… Great work from all our GSoC students, expect some demonstrations here in the coming weeks as we merge everything quickly. We've resumed upstreaming and are getting ready for GCC 15.1! Feel free to get in touch regarding the good first issue mentioned!


Open Source Security Inc. Reposted

Monthly report for June is out: rust-gcc.github.io/2024/07/05/202… More amazing work from our amazing GSoC students + two very cool compiler issues in the Call for Contribution, which you are welcome to come chat about! We're also looking forward to meeting folks at RustConf and EuroRust!


Open Source Security Inc. Reposted

We just published a new report for the month of May 2024: rust-gcc.github.io/2024/06/11/202… Lots of GSoC progress, and lots of cool milestones for next year! Feel free to have a look at the hackmd linked in the post to see all the cool stuff we'll be working on soon :) core, alloc, RfL...


Happy to be sponsoring @IEEESSP next week in San Francisco: sp2024.ieee-security.org Some of the team will be in attendance for the Symposium and LangSec workshop, come say hi!


Open Source Security Inc. Reposted

New report is out! Almost all of our commits made it to the 14.1 GCC release, but sadly some of the latest features did not :( If you'd still like to try us out, we will be releasing gccrs packages for major Linux distributions. We're looking forward to your many bug reports!


Open Source Security Inc. Reposted

Our 6.8 beta is now available to beta testers! Combined with this release, in all of today's patches, we're announcing a world-first capability for RAP and CFI in general: backward-edge CFI compatibility with all tracing and livepatching functionality of the Linux kernel. Enjoy!


Open Source Security Inc. Reposted

The report for the month of March is out: rust-gcc.github.io/2024/04/15/202… We are fast approaching the GCC 14.1 release and hard at work on the last features we want you to try! We've also spent a lot of time reviewing GSoC proposals, and have selected our students for this year!


Open Source Security Inc. Reposted

New monthly report for February: rust-gcc.github.io/2024/03/05/202…: More borrow checking and an almost_println!() implementation! More importantly: Thank you to all the GSoC applicants joining our little community 🧡 We appreciate your involvement and your contributions a *lot*!


Open Source Security Inc. Reposted

A weakness 23 years in the making: binaries and libraries built with an older toolchain act as timebombs against ASLR under "recent" Linux kernel and glibc changes. Users: Check your exposure! Developers: Rebuild binaries to achieve full ASLR benefit! grsecurity.net/toolchain_necr…


Open Source Security Inc. Reposted

A short Friday afternoon blog announcing a new version of paxtest with some useful new tests to get you ready for Monday! grsecurity.net/paxtest_release

Tweet Image 1

Open Source Security Inc. Reposted

We are and will continue to be loudly opposed to the effective destruction of a system that, while flawed, is used by the entire security industry and is found useful by many. Until the decision gets reverted, we'll be part of the solution for our current (and future) customers.

Tweet Image 1

Open Source Security Inc. Reposted

We have updated the project list for this year's GSoC: gcc.gnu.org/wiki/SummerOfC… They concern our borrow-checking integration, inline assembly, adapting the rustc testsuite and starting to explore the semantic differences between rustc and gccrs. 1/7


Open Source Security Inc. Reposted

New monthly report is out: rust-gcc.github.io/2024/02/05/202… Patches are sent upstream, we're now finishing up our tooling to make upstreaming easier, faster, and on a weekly basis! We're also starting to integrate existing rustc components to speed up our development, more on this soon!


Open Source Security Inc. Reposted

New monthly report for December 2023: rust-gcc.github.io/2024/01/12/202… More patches and more borrow checking! We are in the final days of preparing our patch-set of 900 commits, which will sync upstream GCC with our development repository. Soon on a mailing list near you :)


This account does not follow anyone
Loading...

Something went wrong.


Something went wrong.