@xoreipeip Profile picture

Balazs Bucsay [EQ]

@xoreipeip

Never trade liberty for security. One is a right, the other is a myth. My tweets are my own.

Similar User
xwings | kj photo

@onlyxwings

vessial photo

@vessial

Moriarty photo

@Moriarty_Meng

0x5A1F photo

@Saif_Sherei

Manuel Caballero photo

@magicmac2000

Rio photo

@0x09AL

ron190 💉 photo

@ron190jsql

Chris Sullo photo

@chrissullo

Rawsec Inventory Bot photo

@RawsecBot

Sunny photo

@sunn_y_k

Cannot find my room, are you sure @GrehackConf that you’ve booked it? ;) joking…

Tweet Image 1

Heading to Grenoble for @GrehackConf Will present my Cisco findings tomorrow morning. Let me know if you are around! CC @DavinsiLabs


It’s heart-warming to see how quickly people can learn when given the right nudges. Well done @cryptax !

Thank your @xoreipeip for this brillant workshop on Unicorn Engine! I didn't know a thing about it, and managed to complete the last exercise as you can see. Great workshop at @hack_lu, thanks for organizing them! #hacklu2024 #unicorn

Tweet Image 1


Heading to @hack_lu Hit me up if you are around! Or join me on my Unicorn Engine workshop! #hacklu


There are still empty seats to grab on our Software Reverse Engineer training! Join us at Vienna this November! Register here: deepsec.net/register.html (DeepSec Conference & Training 6 (Regular))

Fancy a bit of Reverse Engineering training? Join me at #DeepSec this November! Beginner's course for those who always wanted to learn SRE! From the basics to build up a solid foundation. Details: deepsec.net/speaker.html#W… Ticket type: DeepSec Conference & Training 6 (Early Bird)

Tweet Image 1


Balazs Bucsay [EQ] Reposted

Furthermore IDA 9 will be a subscription model. You can no longer buy it once and stay at that version until end of time. It will stop saving work one month after the subscription runs out. Corporate super greed has arrived in IDA land.


This week, I'll be presenting my new talk, Server-Side Cross-Site Scripting, at #BSidesLjubljana. I can’t wait to return to the lovely city of Ljubljana! Let me know if you are around!


Balazs Bucsay [EQ] Reposted

📢 New day, new name 🥁... 👤 Balazs Bucsay ➡️ Is Your Phone Spying on You? An In-Depth Analysis of Vulnerabilities in Cisco VoIP Phones See you tomorrow 🔥


Fancy a bit of Reverse Engineering training? Join me at #DeepSec this November! Beginner's course for those who always wanted to learn SRE! From the basics to build up a solid foundation. Details: deepsec.net/speaker.html#W… Ticket type: DeepSec Conference & Training 6 (Early Bird)

Tweet Image 1

Balazs Bucsay [EQ] Reposted

A WAF blocks x.oastify.com but x.oastify.net etc are allowed! Nice job WAF, you made the world a little bit more insecure by obscurity! Not saying use public collab server but this is just an example of how things are blocked by some WAFs!

Red Teaming and Bug Bounty have reached parity in a sense... Cloud CDN WAF companies are watching our every tool, technique, and ideas in bug bounty. Watching our githubs, streams, and talks. Red Teamers took a lot of good TTPs private. BB maybe should also? I'm tired 😩



I usually keep this channel focused on IT-Security, but this is an exception. I'm planning to kayak the length of the Thames in a few months. Please consider sharing the following page and supporting the cause! justgiving.com/crowdfunding/k…


Reach out to me if you need to know more about the training. Also repost and share if you would!

We are delighted to announce our Reverse Engineering Training! After months of hard work, we have materialised a course that can teach even complete beginners how to RE, improve on techniques, and solidify their knowledge. Details are provided below: mantrainfosec.com/training-sre.h…



In the past few months, I've dedicated all my time and energy to creating a high-quality Software Reverse Engineering training course. This training reflects the knowledge I've gained over the past 20 years in this industry. In case you are interested in the course, send me a DM!

Tweet Image 1

Can somebody point me to an article on security of Vagrant pre-packaged OS? Is there any? Or do we just download fully installed operating systems from untrusted sources?


Find it funny how people happy to copy/paste curl&bash&execute scripts from random webpages but get worried about how a closed-source application might containing malicious code. Same goes to random code from Github being compiled.


Hitting false expectations again. I thought that using a toolchain would "guarantee" that I wouldn't have to patch source code to be able to compile. Buildroot is great, but why do I need to patch 3-4 packages every time I build? Rhetorical question.


Balazs Bucsay [EQ] Reposted

That is very convenient 😂


Won a PS5 last week. Try to play at the moment but the PS network is down. Unbelievable… anything I touch breaks. Here is a picture of a rowing machine that I started using at the gym the other day.

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.